Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 09 Feb 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Uvnc
Uvnc ultravnc |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:uvnc:ultravnc:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Uvnc
Uvnc ultravnc |
Fri, 06 Feb 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ultravnc
Ultravnc ultravnc |
|
| Vendors & Products |
Ultravnc
Ultravnc ultravnc |
Thu, 05 Feb 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 05 Feb 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | UltraVNC Launcher 1.2.4.0 contains a denial of service vulnerability in its password configuration properties that allows local attackers to crash the application. Attackers can paste an overly long 300-character string into the password field to trigger an application crash and prevent normal launcher functionality. | |
| Title | UltraVNC Launcher 1.2.4.0 - 'Password' Denial of Service | |
| Weaknesses | CWE-121 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-02-05T18:44:00.778Z
Reserved: 2026-02-03T16:27:45.306Z
Link: CVE-2020-37132
Updated: 2026-02-05T18:43:58.019Z
Status : Analyzed
Published: 2026-02-05T17:16:08.363
Modified: 2026-02-09T22:08:53.663
Link: CVE-2020-37132
No data.
OpenCVE Enrichment
Updated: 2026-02-06T12:05:31Z