This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NoMachine. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8.
ZDI-26-710: NoMachine mDNS Heap-based Buffer Overflow Remote Code Execution Vulnerability
About this summary. This is a short, independently written summary of an article first published by Zero Day Initiative. Cyber Security News did not report or verify the underlying story. Read the original: http://www.zerodayinitiative.com/advisories/ZDI-26-710/
Source attribution: headline and facts are from Zero Day Initiative (zerodayinitiative.com). Summary method: excerpt of the source description. See our source attribution policy and corrections policy.






