CVE-2014-7872
Comodo GeekBuddy < 4.18.120 - Unauthenticated Privilege Escalation via VNC Server
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2014-7872. PoCs published by Jeremy Brown.
AI-analyzed exploit summary This is a writeup describing a local privilege escalation vulnerability in Comodo GeekBuddy due to an unauthenticated VNC server. The exploit involves connecting to the VNC server on localhost to hijack an administrative session.
Description
Comodo GeekBuddy before 4.18.121 does not restrict access to the VNC server, which allows local users to gain privileges by connecting to the server.
Exploits (1)
This is a writeup describing a local privilege escalation vulnerability in Comodo GeekBuddy due to an unauthenticated VNC server. The exploit involves connecting to the VNC server on localhost to hijack an administrative session.