threat
engine
.sh
Back
·
··:··
Home
/
Product
/
point to point protocol project point to point protocol
Product
point to point protocol project point to point protocol
6 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2020-8597
>= 2.4.2 and <= 2.4.8
eap.c in pppd in ppp 2.4.2 through 2.4.8 has an rhostname buffer overflow in the eap_request and eap_response functions.
9.8
CRITICAL
CVE-2018-11574
< 2.4.9
Improper input validation together with an integer overflow in the EAP-TLS protocol implementation in PPPD may cause a crash, info
9.8
CRITICAL
CVE-2015-3310
<= 2.4.6
Buffer overflow in the rc_mksid function in plugins/radius/util.c in Paul's PPP Package (ppp) 2.4.6 and earlier, when the PID for
CVE-2014-3158
<= 2.4.6
Integer overflow in the getword function in options.c in pppd in Paul's PPP Package (ppp) before 2.4.7 allows attackers to "access
CVE-2006-2194
<= 2.4.4
The winbind plugin in pppd for ppp 2.4.4 and earlier does not check the return code from the setuid function call, which might all
CVE-2004-2695
all versions
SQL injection vulnerability in the Authorize.net callback code (subscriptions/authorize.php) in Jelsoft vBulletin 3.0 through 3.0.
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin