VendorsISSblackice_agentall versions
Vulnerabilities

ISS Internet Security Systems BlackICE Agent

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2002-0237
Buffer overflow in ISS BlackICE Defender 2.9 and earlier, BlackICE Agent 3.0 and 3.1, and RealSecure Server Sensor 6.0.1 and 6.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a flood of large ICMP ping packets.
Published 2002-06-25 · Modified
7.5EPSS 0.037
CVE-2002-0956
BlackICE Agent 3.1.eal does not always reactivate after a system standby, which could allow remote attackers and local users to bypass intended firewall restrictions.
Published 2002-08-31 · Modified
7.5EPSS 0.015
CVE-2000-0562
BlackIce Defender 2.1 and earlier, and BlackIce Pro 2.0.23 and earlier, do not properly block Back Orifice traffic when the security setting is Nervous or lower.
Published 2000-07-12 · Modified
7.5EPSS 0.013
CVE-2002-0957
The default configuration of BlackICE Agent 3.1.eal and 3.1.ebh has a high tcp.maxconnections setting, which could allow remote attackers to cause a denial of service (memory consumption) via a large number of connections to the BlackICE system that consumes more resources than intended by the user.
Published 2002-08-31 · Modified
5.0EPSS 0.013