Vulnerabilities > IIJ > High

DATE CVE VULNERABILITY TITLE RISK
2022-10-24 CVE-2022-41986 Unspecified vulnerability in IIJ Smartkey
Information disclosure vulnerability in Android App 'IIJ SmartKey' versions prior to 2.1.4 allows an attacker to obtain a one-time password issued by the product under certain conditions.
network
low complexity
iij
7.5
2015-02-28 CVE-2015-0887 Resource Management Errors vulnerability in IIJ products
npppd in the PPP Access Concentrator (PPPAC) on SEIL SEIL/x86 Fuji routers 1.00 through 3.30, SEIL/X1 routers 3.50 through 4.70, SEIL/X2 routers 3.50 through 4.70, and SEIL/B1 routers 3.50 through 4.70 allows remote attackers to cause a denial of service (infinite loop and device hang) via a crafted SSTP packet.
network
iij CWE-399
7.1
2014-12-05 CVE-2014-7256 Resource Management Errors vulnerability in IIJ products
The (1) PPP Access Concentrator (PPPAC) and (2) Dial-Up Networking Internet Initiative Japan Inc.
network
low complexity
iij CWE-399
7.8
2011-03-01 CVE-2011-0454 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in IIJ products
Buffer overflow in the PPP Access Concentrator (PPPAC) on the SEIL/x86 with firmware 1.00 through 1.61, SEIL/B1 with firmware 1.00 through 3.11, SEIL/X1 with firmware 1.00 through 3.11, SEIL/X2 with firmware 1.00 through 3.11, SEIL/Turbo with firmware 1.80 through 2.10, and SEIL/neu 2FE Plus with firmware 1.80 through 2.10 might allow remote attackers to execute arbitrary code via a PPPoE packet.
low complexity
iij CWE-119
8.3
2009-12-10 CVE-2009-4293 Configuration vulnerability in IIJ products
Internet Initiative Japan SEIL/X1, SEIL/X2, and SEIL/B1 firmware 2.30 through 2.51, when NAT is enabled, allows remote attackers to cause a denial of service (system restart) via crafted GRE packets.
network
iij CWE-16
7.1