CVE-2009-4292
UnknownEPSS 4.76%
Last modified
CVE-2009-4292 is a vulnerability of currently unknown severity. Buffer overflow in the URL filtering function in Internet Initiative Japan SEIL/X1, SEIL/X2, and SEIL/B1 firmware 2.40 through 2.51 allows remote attackers to execute arbitrary code via unspecified vectors.. EPSS estimates a 4.76% chance of exploitation in the next 30 days.
Description
Buffer overflow in the URL filtering function in Internet Initiative Japan SEIL/X1, SEIL/X2, and SEIL/B1 firmware 2.40 through 2.51 allows remote attackers to execute arbitrary code via unspecified vectors.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Iij | Seil\/X1 Firmware | 2.40 |
| Iij | Seil\/X1 Firmware | 2.41 |
| Iij | Seil\/X1 Firmware | 2.42 |
| Iij | Seil\/X1 Firmware | 2.50 |
| Iij | Seil\/X1 Firmware | 2.51 |
| Iij | Seil\/X1 | All versions |
| Iij | Seil\/B1 Firmware | 2.40 |
| Iij | Seil\/B1 Firmware | 2.41 |
| Iij | Seil\/B1 Firmware | 2.42 |
| Iij | Seil\/B1 Firmware | 2.50 |
| Iij | Seil\/B1 Firmware | 2.51 |
| Iij | Seil\/B1 | All versions |
| Iij | Seil\/X2 Firmware | 2.40 |
| Iij | Seil\/X2 Firmware | 2.41 |
| Iij | Seil\/X2 Firmware | 2.42 |
| Iij | Seil\/X2 Firmware | 2.50 |
| Iij | Seil\/X2 Firmware | 2.51 |
| Iij | Seil\/X2 | All versions |
References
- http://secunia.com/advisories/37154Vendor Advisory
- http://www.seil.jp/seilseries/security/2009/a00669.phpVendor Advisory
- http://www.vupen.com/english/advisories/2009/3111Vendor Advisory
- http://secunia.com/advisories/37154Vendor Advisory
- http://www.seil.jp/seilseries/security/2009/a00669.phpVendor Advisory
- http://www.vupen.com/english/advisories/2009/3111Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2009-4292?
Buffer overflow in the URL filtering function in Internet Initiative Japan SEIL/X1, SEIL/X2, and SEIL/B1 firmware 2.40 through 2.51 allows remote attackers to execute arbitrary code via unspecified vectors.
How severe is CVE-2009-4292?
Severity scoring for CVE-2009-4292 is pending analysis. The EPSS model estimates a 4.76% probability of exploitation in the next 30 days.
How do I fix CVE-2009-4292?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2009
- CVE-2009-4286Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2009-4287Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2009-4288Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2009-4289Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2009-4290Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2009-4291Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2009-4293Internet Initiative Japan SEIL/X1, SEIL/X2, and SEIL/B1 firm…
- CVE-2009-4294Unspecified vulnerability in the Authentication Manager (aka…
- CVE-2009-4295Sun Ray Server Software 4.0 and 4.1 does not generate a uniq…
- CVE-2009-4296SQL injection vulnerability in the Taxonomy Timer module 5.x…
- CVE-2009-4297Multiple cross-site request forgery (CSRF) vulnerabilities i…
- CVE-2009-4298The LAMS module (mod/lams) for Moodle 1.8 before 1.8.11 and …
Are you affected by CVE-2009-4292?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
