📦

tcp\/ip

Vendor: treck

Actively Exploited 1 CISA KEV List
PoC / Exploits 3 Code Available
Total RCEs 3 Remote Access
Total CVEs 21 Total Indexed
Avg. EPSS 10.45% Exploit Prob.
Latest CVE CVE-2020-25066 Dec 22

Security Vulnerability Index

Page 1 / 3
10.0 CVSS

A heap-based buffer overflow in the Treck HTTP Server component before 6.0.1.68 allows remote attackers to cause a denial of service (crash/reset) or to possibly execute arbitrary code.

EPSS: 3.75%
4.3 CVSS

The Treck TCP/IP stack before 6.0.1.66 has an ARP Out-of-bounds Read.

EPSS: 0.51%
5.3 CVSS

The Treck TCP/IP stack before 6.0.1.66 has an IPv6 Out-of-bounds Read.

EPSS: 3.18%
5.3 CVSS

The Treck TCP/IP stack before 6.0.1.66 has a TCP Out-of-bounds Read.

EPSS: 1.54%
5.3 CVSS

The Treck TCP/IP stack before 6.0.1.66 has Improper ICMPv4 Access Control.

EPSS: 2.94%
5.3 CVSS

The Treck TCP/IP stack before 6.0.1.66 has an ICMPv4 Out-of-bounds Read.

EPSS: 2.93%
5.3 CVSS

The Treck TCP/IP stack before 6.0.1.66 has an IPv4 Integer Underflow.

EPSS: 2.43%
4.3 CVSS

The Treck TCP/IP stack before 4.7.1.27 mishandles '\0' termination in DHCP.

EPSS: 0.56%
6.3 CVSS

The Treck TCP/IP stack before 6.0.1.66 improperly handles a Length Parameter Inconsistency in TCP.

EPSS: 1.09%
6.3 CVSS

The Treck TCP/IP stack before 6.0.1.66 has an Ethernet Link Layer Integer Underflow.

EPSS: 0.80%