CVE-2015-4060: Wavelink Connectpro

High severity, CVSS 10.0. EPSS: 4.7% chance of exploitation in the next 30 days.

Heap-based buffer overflow in the TermProxy (WLTermProxyService.exe) service in Wavelink ConnectPro allows remote attackers to execute arbitrary code via a large HTTP header.

Affected products

  • Wavelink Connectpro: affected versions not specified

Published 2015-05-29. Last modified 2026-06-17.