Vulnerabilities > Cybelesoft > Thinfinity VNC

DATE CVE VULNERABILITY TITLE RISK
2022-05-20 CVE-2022-25227 Origin Validation Error vulnerability in Cybelesoft Thinfinity VNC 4.0.0.1
Thinfinity VNC v4.0.0.1 contains a Cross-Origin Resource Sharing (CORS) vulnerability which can allow an unprivileged remote attacker, if they can trick a user into browse malicious site, to obtain an 'ID' that can be used to send websocket requests and achieve RCE.
6.8