CVE-2020-37133: Uvnc Ultravnc

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

UltraVNC Launcher 1.2.4.0 contains a denial of service vulnerability in the Repeater Host configuration field that allows attackers to crash the application. Attackers can paste an overly long string of 300 characters into the Repeater Host property to trigger an application crash.

Affected products

  • Uvnc Ultravnc: up to and including 1.2.4.0

Published 2026-02-05. Last modified 2026-06-17.