CVE-2022-25227
20.05.2022, 12:15
Thinfinity VNC v4.0.0.1 contains a Cross-Origin Resource Sharing (CORS) vulnerability which can allow an unprivileged remote attacker, if they can trick a user into browse malicious site, to obtain an 'ID' that can be used to send websocket requests and achieve RCE.Enginsight
Vendor | Product | Version |
---|---|---|
cybelesoft | thinfinity_vnc | 4.0.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration