CVE-2022-41975

RealVNC VNC Server before 6.11.0 and VNC Viewer before 6.22.826 on Windows allow local privilege escalation via MSI installer Repair mode.
Configurations

Configuration 1 (hide)

cpe:2.3:a:realvnc:vnc_server:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:realvnc:vnc_viewer:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

20 May 2025, 16:15

Type Values Removed Values Added
CWE CWE-269

21 Nov 2024, 07:24

Type Values Removed Values Added
References () https://help.realvnc.com/hc/en-us/articles/360002253138-Release-Notes#vnc-server-6-11-0-released-0-2 - Release Notes, Vendor Advisory () https://help.realvnc.com/hc/en-us/articles/360002253138-Release-Notes#vnc-server-6-11-0-released-0-2 - Release Notes, Vendor Advisory

Information

Published : 2022-09-30 18:15

Updated : 2025-05-20 16:15


NVD link : CVE-2022-41975

Mitre link : CVE-2022-41975

CVE.ORG link : CVE-2022-41975


JSON object : View

Products Affected

realvnc

  • vnc_server
  • vnc_viewer

microsoft

  • windows
CWE
NVD-CWE-noinfo CWE-269

Improper Privilege Management