irontec records
7 published records for vendor irontec.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 85.7%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-787 Out-of-bounds Write3
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')2
- CWE-122 Heap-based Buffer Overflow1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2024-3120No exploit | Stack-Buffer Overflow in 'Content-Length' and 'Warning' Header Processing in sngrepirontec · sngrep · CWE-120 | Critical9.8 | — | 1.9% | Apr 9, 2024 |
40Plan | CVE-2024-3119No exploit | Stack-Buffer Overflow in 'Call-ID' and 'X-Call-ID' SIP Header Processing in sngrepirontec · sngrep · CWE-120 | Critical9.8 | — | 1.8% | Apr 9, 2024 |
39Monitor | CVE-2015-10084No exploit | irontec klear-library BaseController.php _prepareWhere sql injectionirontec · klear-library · CWE-89 | Critical9.8 | — | 0.7% | Feb 21, 2023 |
31Monitor | CVE-2023-31982No exploit | Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_packet_reasm_ip at /src/capture.c.irontec · sngrep · CWE-787 | High7.8 | — | 0.3% | May 9, 2023 |
31Monitor | CVE-2023-36192No exploit | Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_ws_check_packet at /src/capture.c.irontec · sngrep · CWE-787 | High7.8 | — | 0.3% | Jun 22, 2023 |
31Monitor | CVE-2023-31981No exploit | Sngrep v1.6.0 was discovered to contain a stack buffer overflow via the function packet_set_payload at /src/packet.c.irontec · sngrep · CWE-787 | High7.8 | — | 0.3% | May 9, 2023 |
30Monitor | CVE-2024-35434No exploit | Irontec Sngrep v1.8.1 was discovered to contain a heap buffer overflow via the function rtp_check_packet at /sngrep/src/rtp.c.irontec · sngrep · CWE-122 | High7.5 | — | 0.6% | May 29, 2024 |
- CVE-2024-312040Plan
Stack-Buffer Overflow in 'Content-Length' and 'Warning' Header Processing in sngrep
CriticalCVSS 9.8No exploitEPSS 2%irontec · sngrepApr 9, 2024
- CVE-2024-311940Plan
Stack-Buffer Overflow in 'Call-ID' and 'X-Call-ID' SIP Header Processing in sngrep
CriticalCVSS 9.8No exploitEPSS 2%irontec · sngrepApr 9, 2024
- CVE-2015-1008439Monitor
irontec klear-library BaseController.php _prepareWhere sql injection
CriticalCVSS 9.8No exploitEPSS 1%irontec · klear-libraryFeb 21, 2023
- CVE-2023-3198231Monitor
Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_packet_reasm_ip at /src/capture.c.
HighCVSS 7.8No exploitEPSS 0%irontec · sngrepMay 9, 2023
- CVE-2023-3619231Monitor
Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_ws_check_packet at /src/capture.c.
HighCVSS 7.8No exploitEPSS 0%irontec · sngrepJun 22, 2023
- CVE-2023-3198131Monitor
Sngrep v1.6.0 was discovered to contain a stack buffer overflow via the function packet_set_payload at /src/packet.c.
HighCVSS 7.8No exploitEPSS 0%irontec · sngrepMay 9, 2023
- CVE-2024-3543430Monitor
Irontec Sngrep v1.8.1 was discovered to contain a heap buffer overflow via the function rtp_check_packet at /sngrep/src/rtp.c.
HighCVSS 7.5No exploitEPSS 1%irontec · sngrepMay 29, 2024