Skip to content
Noroxi

softether records

16 published records for vendor softether.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
6.3%
Median publish → KEV
No record has entered KEV

All records

16 records
  • SoftEther VPN 5.02.5187 is vulnerable to Buffer Overflow in the Command.c file via the PtMakeCert and PtMakeCert2048 functions.

    CriticalCVSS 9.8No exploitEPSS 1%

    softether · vpnMar 12, 2025

  • SoftEther VPN 5.02.5187 is vulnerable to Buffer Overflow in Internat.c via the UniToStrForSingleChars function.

    CriticalCVSS 9.8No exploitEPSS 1%

    softether · vpnMar 12, 2025

  • SoftEtherVPN 5.02.5187 is vulnerable to Use after Free in the Command.c file via the CheckNetworkAcceptThread function.

    CriticalCVSS 9.8No exploitEPSS 1%

    softether · vpnMar 12, 2025

  • A heap-based buffer overflow vulnerability exists in the vpnserver WpcParsePacket() functionality of SoftEther VPN 4.41-9782-beta, 5.01.9674

    HighCVSS 8.1No exploitEPSS 2%

    softether · vpnOct 12, 2023

  • An authentication bypass vulnerability exists in the CiRpcAccepted() functionality of SoftEther VPN 4.41-9782-beta and 5.01.9674.

    HighCVSS 7.8No exploitEPSS 1%

    softether · vpnOct 12, 2023

  • See.sys, up to version 4.25, in SoftEther VPN Server versions 4.29 or older, allows a user to call an IOCTL specifying any kernel address to

    HighCVSS 7.8No exploitEPSS 0%

    softether · see.sysJul 29, 2019

  • A denial-of-service vulnerability exists in the vpnserver EnSafeHttpHeaderValueStr functionality of SoftEther VPN 5.01.9674 and 5.02.

    HighCVSS 7.5No exploitEPSS 1%

    softether · vpnOct 12, 2023

  • A denial-of-service vulnerability exists in the vpnserver ConnectionAccept() functionality of SoftEther VPN 5.02.

    HighCVSS 7.5No exploitEPSS 1%

    softether · vpnOct 12, 2023

  • An integer underflow vulnerability exists in the vpnserver OvsProcessData functionality of SoftEther VPN 5.01.9674 and 5.02.

    HighCVSS 7.5No exploitEPSS 1%

    softether · vpnOct 12, 2023

  • Pre-Auth EAP-TLS DoS on SoftEther VPN Developer Edition

    HighCVSS 7.5No exploitEPSS 1%

    softether · softethervpnApr 7, 2026

  • An authentication bypass vulnerability exists in the CiRpcServerThread() functionality of SoftEther VPN 5.01.9674 and 4.41-9782-beta.

    HighCVSS 7.4No exploitEPSS 0%

    softether · vpnOct 12, 2023

  • A denial of service vulnerability exists in the DCRegister DDNS_RPC_MAX_RECV_SIZE functionality of SoftEther VPN 4.41-9782-beta, 5.01.9674 a

    MediumCVSS 5.9No exploitEPSS 1%

    softether · vpnOct 12, 2023

  • Memory Leak vulnerability in SoftEtherVPN 5.02.5187 allows an attacker to cause a denial of service via the UnixMemoryAlloc function.

    MediumCVSS 5.6No exploitEPSS 0%

    softether · vpnMar 12, 2025

  • An information disclosure vulnerability exists in the ClientConnect() functionality of SoftEther VPN 5.01.9674.

    MediumCVSS 5.3No exploitEPSS 1%

    softether · vpnOct 12, 2023

  • SoftEther VPN with L2TP - 2.75x Amplification

    MediumCVSS 5.3No exploitEPSS 1%

    softethervpn · softethervpnJun 26, 2024

  • An information disclosure vulnerability exists in the CtEnumCa() functionality of SoftEther VPN 4.41-9782-beta and 5.01.9674.

    MediumCVSS 4.4No exploitEPSS 0%

    softether · vpnOct 12, 2023