IP TOOLS 2.50 contains a local buffer overflow vulnerability in the SNMP Scanner component that allows local attackers to crash the application by supplying oversized input. Attackers can paste malicious data into the 'From Addr' and 'To Addr' fields and trigger the crash by clicking the Start button, causing denial of service and SEH overwrite.
Metrics
Affected Vendors & Products
References
History
Tue, 07 Apr 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ks-soft
Ks-soft ip Tools |
|
| Vendors & Products |
Ks-soft
Ks-soft ip Tools |
Mon, 06 Apr 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 05 Apr 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IP TOOLS 2.50 contains a local buffer overflow vulnerability in the SNMP Scanner component that allows local attackers to crash the application by supplying oversized input. Attackers can paste malicious data into the 'From Addr' and 'To Addr' fields and trigger the crash by clicking the Start button, causing denial of service and SEH overwrite. | |
| Title | IP TOOLS 2.50 Local Buffer Overflow Denial of Service | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-04-05T20:45:11.497Z
Updated: 2026-04-06T16:12:54.067Z
Reserved: 2026-04-05T12:41:43.453Z
Link: CVE-2018-25256
Updated: 2026-04-06T16:12:50.457Z
Status : Awaiting Analysis
Published: 2026-04-05T21:16:41.033
Modified: 2026-04-07T13:20:35.010
Link: CVE-2018-25256
No data.