← back
CVE-2001-0168

CVE-2001-0168

60Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 71%
from disclosure to weapon3194 days
Published on NVDMar 9
1st PoC+3194d
metasploitJan 29
exploitation probability
71%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Buffer overflow in AT&T WinVNC (Virtual Network Computing) server 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands via a long HTTP GET request when the DebugLevel registry key is greater than 0.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.