Secure Network Operations Advisory SRT2004-01-17-0425 – Ultr@VNC, the client/server software that allows you to remotely control a computer over any TCP/IP connection, has a faulty ShellExecute() statement that allows a local attacker to gain SYSTEM access.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/32542/SRT2004-01-17-0425.txt
Source: https://packetstormsecurity.com/files/32542/SRT2004-01-17-0425.txt.html

