← Back to CVE List

CVE-2019-17662

Published: 2019-10-16T18:15Z
Last Modified: 2024-11-21T04:32Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
ThinVNC 1.0b1 is vulnerable to arbitrary file read, which leads to a compromise of the VNC server. The vulnerability exists even when authentication is turned on during the deployment of the VNC server. The password for authentication is stored in cleartext in a file that can be read via a ../../ThinVnc.ini directory traversal attack vector. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt