Back
CVE-2019-17662
CRITICAL
ThinVNC 1.0b1 is vulnerable to arbitrary file read, which leads to a compromise of the VNC server. The vulnerability exists even when authentication is turned on during the deployment of the VNC server. The password for authentication is stored in cleartext in a file that can be read via a ../../ThinVnc.ini directory traversal attack vector.
Published: Oct 16, 2019
Modified: Jun 17, 2026
CWE-22
CWE-522
CVSS Metrics
CVSSv3
Attack Vector:
NETWORK
Attack Complexity:
LOW
Privileges Required:
NONE
User Interaction:
NONE
Scope:
UNCHANGED
Confidentiality Impact:
HIGH
Integrity Impact:
HIGH
Availability Impact:
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| cybelsoft | thinvnc | 1.0 |
GitHub Security Advisory GHSA-23gm-hjpg-qfp3
ThinVNC 1.0b1 is vulnerable to arbitrary file read, which leads to a compromise of the VNC server...
References (8)
- http://packetstormsecurity.com/files/154896/ThinVNC-1.0b1-Authentication-Bypass.html Exploit, Third Party Advisory, VDB Entry
- https://github.com/bewest/thinvnc/issues/5 Third Party Advisory
- https://github.com/shashankmangal2/Exploits/blob/master/ThinVNC-RemoteAccess/POC.py Broken Link
- https://redteamzone.com/ThinVNC/ Exploit, Third Party Advisory
- http://packetstormsecurity.com/files/154896/ThinVNC-1.0b1-Authentication-Bypass.html Exploit, Third Party Advisory, VDB Entry
- https://github.com/bewest/thinvnc/issues/5 Third Party Advisory
- https://github.com/shashankmangal2/Exploits/blob/master/ThinVNC-RemoteAccess/POC.py Broken Link
- https://redteamzone.com/ThinVNC/ Exploit, Third Party Advisory
Risk Scores
CVSS Score
9.8 / 10
EPSS Score
96.76%
Top 0% most likely to be exploited
Threat Score
78.2 / 100
Data Sources
NVD
EPSS
GitHub