๐Ÿ” CVE Alert

CVE-2018-25256

MEDIUM 5.5

IP TOOLS 2.50 Local Buffer Overflow Denial of Service

CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
2th

IP TOOLS 2.50 contains a local buffer overflow vulnerability in the SNMP Scanner component that allows local attackers to crash the application by supplying oversized input. Attackers can paste malicious data into the 'From Addr' and 'To Addr' fields and trigger the crash by clicking the Start button, causing denial of service and SEH overwrite.

CWE CWE-787
Vendor ks-soft
Product ip tools
Published Apr 5, 2026
Last Updated Apr 6, 2026
Stay Ahead of the Next One

Get instant alerts for ks-soft ip tools

Be the first to know when new medium vulnerabilities affecting ks-soft ip tools are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High

Affected Versions

Ks-Soft / IP TOOLS
2.50

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
exploit-db.com: https://www.exploit-db.com/exploits/46286 ks-soft.net: https://www.ks-soft.net/ip-tools.eng/index.htm vulncheck.com: https://www.vulncheck.com/advisories/ip-tools-local-buffer-overflow-denial-of-service

Credits

Rafael Pedrero