← Back to search

CVE-2026-49435

9.8 CRITICAL

Published 2026-08-04 · Updated 2026-08-04

AI risk analysis

Summary
The flaw is a stack-based buffer overflow in Keysight IxChariot Endpoint products, allowing unauthenticated remote attackers to execute arbitrary code with administrative privileges by sending specially crafted packets.
Exploitability
Exploitation requires sending a specific packet; no authentication needed but technical expertise is required.
Blast radius
If exploited, the impact could be severe, as it allows full control over affected systems with admin rights.
Prioritized remediation
Update to the latest vendor patches or versions immediately.
rcebuffer-overflowadmin-privsnetwork

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

Keysight IxChariot Endpoint and associated products contain a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet and execute arbitrary code with administrative privileges.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-121

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.