Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Realvnc

First CVE: Aug 6, 2008Active for: 18 yearsTotal CVEs: 6

RealVNC maintains a remote-access and screen-sharing platform centered on its VNC server and viewer products, which are deployed across both consumer and enterprise environments for technical support and system administration. The vendor's vulnerabilities cluster around input-validation and privilege-management weaknesses characteristic of remote-access software, and frequently acquire public exploit tooling. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
6
Total CVEs
More Total CVEs than 86% of tracked vendors
0.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 3% of tracked vendors
7.4
Avg CVSS Score
Higher Avg CVSS Score than 56% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Realvnc over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 6, 2008
17 years ago
Most Recent CVE
Sep 30, 2022
1,393 days ago

Products(4 total)

Top CVEs

Signals from CVEs in this vendor scope (6 CVEs).

6 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2008-4770HIGH
The CMsgReader::readRect function in the VNC Viewer component in RealVNC VNC Free Edition 4.0 through 4.1.2, Enterprise Edition E4.0 through E4.4.2, and Personal Edition P4.0 throu
Jan 16, 200910.027NONO
CVE-2022-41975HIGH
RealVNC VNC Server before 6.11.0 and VNC Viewer before 6.22.826 on Windows allow local privilege escalation via MSI installer Repair mode.
Sep 30, 20227.824NONO
CVE-2022-27502HIGH
RealVNC VNC Server 6.9.0 through 5.1.0 for Windows allows local privilege escalation because an installer repair operation executes %TEMP% files as SYSTEM.
Jun 10, 20227.824NONO
CVE-2008-3493MEDIUM
vncviewer.exe in RealVNC Windows Client 4.1.2.0 allows remote VNC servers to cause a denial of service (application crash) via a crafted frame buffer update packet.
Aug 6, 20085.024NOYES
CVE-2021-41380MEDIUM
RealVNC Viewer 6.21.406 allows remote VNC servers to cause a denial of service (application crash) via crafted RFB protocol data. NOTE: It is asserted that this issue requires soci
Sep 17, 20216.522NONO
CVE-2013-6886HIGH
RealVNC VNC 5.0.6 on Mac OS X, Linux, and UNIX allows local users to gain privileges via a crafted argument to the (1) vncserver, (2) vncserver-x11, or (3) Xvnc helper.
Dec 28, 20137.218NONO
View all 6 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products6 CVEs
33%
67%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local2 (33.3%)
Network1 (16.7%)
Unknown3 (50.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low3 (50.0%)
High0 (0.0%)
Unknown3 (50.0%)
User Interaction
None2 (33.3%)
Unknown3 (50.0%)
Required1 (16.7%)
Privileges Required
Low2 (33.3%)
High0 (0.0%)
None1 (16.7%)
Unknown3 (50.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (6 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
16.7% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Realvnc.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Realvnc — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Realvnc's Products

View all 1 CNAs →

Top CWEs