VNC Server Weak Password Encryption Vulnerability
BID:854
Info
VNC Server Weak Password Encryption Vulnerability
| Bugtraq ID: | 854 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Oct 01 1999 12:00AM |
| Updated: | Oct 01 1999 12:00AM |
| Credit: | Discovered by Conde Vampiro of Roses Labs. http://www.roses-labs.com/ |
| Vulnerable: |
AT&T VNC 3.3 .x |
| Not Vulnerable: | |
Exploit / POC
VNC Server Weak Password Encryption Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution / Fix
VNC Server Weak Password Encryption Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
VNC Server Weak Password Encryption Vulnerability
References:
References:
- Roses Labs Security Advisory (Roses Labs)
- Virtual Network Computing (AT&T Laboratories Cambridge)