Cybelsoft's vulnerability footprint centers on ThinVNC, a remote access and desktop virtualization product, with the durable signal reflecting application-layer weaknesses in path traversal and credential management. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cybelsoft over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-17662CRITICAL ThinVNC 1.0b1 is vulnerable to arbitrary file read, which leads to a compromise of the VNC server. The vulnerability exists even when authentication is turned on during the deploym | Oct 16, 2019 | 9.8 | 94 | NO | YES |
CVE-2022-25226CRITICAL ThinVNC version 1.0b1 allows an unauthenticated user to bypass the authentication process via 'http://thin-vnc:8080/cmd?cmd=connect' by obtaining a valid SID without any kind of au | Apr 18, 2022 | 10.0 | 51 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cybelsoft.
Media articles that mention a CVE ID that affects a product developed by Cybelsoft — matched by CVE ID, not by vendor name.