Search found 4 matches

by grizzly
2010-09-13 13:49
Forum: Olders
Topic: This version is vulnerable to a dll exploit
Replies: 12
Views: 43967

Re: This version is vulnerable to a dll exploit

Check if the server is realy encrypted.... you can always redownload the 108 viewer to check it with the old version.

Thats what I did. After extracting the two files from the patch the connection from the UltraVNC Single Click program is always unencrypted.
Without applying the patch on the ...
by grizzly
2010-09-09 13:53
Forum: Olders
Topic: This version is vulnerable to a dll exploit
Replies: 12
Views: 43967

Re: This version is vulnerable to a dll exploit

If you have time, you can also check it yourself...
[...]
The createfile in procmon show all the paths used to search for the key.

The encryption plugin is found, else it wouldn't be shown in the viewer gui...but there seems to be a problem with the key location.

Procmon shows createfile entries ...
by grizzly
2010-09-09 12:07
Forum: Olders
Topic: This version is vulnerable to a dll exploit
Replies: 12
Views: 43967

Re: This version is vulnerable to a dll exploit

The patch limit the search path for dll and key...

Are you using a .vnc to start the viewer.

I start the server using "C:\Program Files\UltraVNC\vncviewer.exe" -dsmplugin msrc4plugin.dsm -listen 5500
I do not use a .vnc-file.

WHere is the encryption dll/key installed.. path ?
If the ...
by grizzly
2010-09-09 08:50
Forum: Olders
Topic: This version is vulnerable to a dll exploit
Replies: 12
Views: 43967

Re: This version is vulnerable to a dll exploit

Hi everyone,

I'm having a problem with this security update. After applying it (extracting to my UltraVNC folder) my VNC sessions are not encrypted anymore.

When using a fresh UlraVNC 1.0.8.2 installation with my rc4.key I can see the following connection info screen:
http://i52.tinypic.com ...