CVE-2019-17424: Nipper-NG Project Nipper-NG
High severity, CVSS 7.8. EPSS: 13.4% chance of exploitation in the next 30 days.
A stack-based buffer overflow in the processPrivilage() function in IOS/process-general.c in nipper-ng 0.11.10 allows remote attackers (serving firewall configuration files) to achieve Remote Code Execution or Denial Of Service via a crafted file.
Affected products
- Nipper-NG Project Nipper-NG: version 0.11.10 only
Published 2019-10-22. Last modified 2026-06-17.