CVE-2026-49435

Summary

Keysight IxChariot Endpoint and associated products contain a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet and execute arbitrary code with administrative privileges.

Affected Software

VendorProductVersion RangeStatus
KeysightHawkeye0 < 6.0.7affected
KeysightHawkeye6.0.7unaffected
KeysightIxChariot10.0.254unaffected
KeysightIxChariot0 < 10.0.254affected
KeysightIxTap0 < 3.13.0affected
KeysightIxTap3.13.0unaffected
KeysightIxProbe0 < 3.13.0affected
KeysightIxProbe3.13.0unaffected
KeysightIxByPass0 < 3.13.0.69affected
KeysightIxByPass3.13.0.69unaffected

Weaknesses

  • CWE-121: CWE-121 Stack-based Buffer Overflow

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References