CVE
- Id
- 4225
- CVE No.
- CVE-2001-1422
- Status
- Candidate
- Description
- WinVNC 3.3.3 and earlier generates the same challenge string for multiple connections, which allows remote attackers to bypass VNC authentication by sniffing the challenge and response of other users.
- Phase
- Assigned (20050320)
- Votes
- None (candidate not yet proposed)
- Comments