top of page
perceptive_background_267k.jpg

Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet to cras…

Published:

3 augustus 2026 om 22:00:00

Alert date:

4 augustus 2026 om 20:02:01

Source:

nvd.nist.gov

Click to open the original link from this advisory

Network Infrastructure, Critical Infrastructure

CVE-2017-20241 describes a heap-based buffer overflow vulnerability in Keysight IxChariot Endpoint versions prior to 9.5.102. The flaw allows an unauthenticated remote attacker to send a specially crafted packet to the affected endpoint. Exploitation can result in a crash of the endpoint service (denial of service) or potentially enable arbitrary code execution. No authentication is required to exploit this vulnerability, significantly increasing its risk. The vulnerability was publicly disclosed via NVD and is referenced in a CISA advisory. Keysight has published a security advisory acknowledging the issue and recommending upgrade to version 9.5.102 or later. The severity is rated High due to the potential for remote code execution without authentication.

Technical details

Mitigation steps:

Affected products:

Keysight IxChariot Endpoint

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page