VendorsTonecinternet_download_managerall versions
Vulnerabilities

Tonec Internet Download Manager

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2010-0995
Stack-based buffer overflow in Internet Download Manager (IDM) before 5.19 allows remote attackers to execute arbitrary code via a crafted FTP URI that causes unspecified "test sequences" to be sent from client to server.
Published 2010-05-05 · Modified
9.3EPSS 0.081
CVE-2025-56231
Tonec Internet Download Manager 6.42.41.1 and earlier suffers from Missing SSL Certificate Validation, which allows attackers to bypass update protections.
Published 2025-11-05 · Modified
9.1EPSS 0.002
CVE-2020-28964
Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Search function. This vulnerability allows attackers to escalate local process privileges via unspecified vectors.
Published 2021-10-22 · Modified
7.2EPSS 0.004
CVE-2020-23060
Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function. This vulnerability allows attackers to escalate local process privileges via a crafted ef2 file.
Published 2021-10-22 · Modified
7.1EPSS 0.004