ZeroHour

Vulnerabilities

16 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2025-8480
Alpine iLX-507 Command Injection Remote Code Execution.

Alpine iLX-507 Command Injection Remote Code Execution. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Alpine iLX-507 devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the Tidal music streaming application. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of the device. Was ZDI-CAN-26357.

NVD description · AI analysis pending
8.0
group max
<1%
  • alpsalpine ilx-507 firmware
CVE-2024-23963
+1 in the same advisory: …23962
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Alpine Halo9 devices.

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Alpine Halo9 devices. An attacker must first obtain the ability to pair a malicious Bluetooth device with the target system in order to exploit this vulnerability. The specific flaw exists within the PBAP_DecodeVCARD function. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root.

NVD description · AI analysis pending
8.0
group max
<1%
  • alpsalpine ilx-f509 firmware
CVE-2024-23923
+4 in the same advisory: …23935 …23961 …23924 …23960
Alpine Halo9 prh_l2_sar_data_ind Use-After-Free Remote Code Execution Vulnerability.

Alpine Halo9 prh_l2_sar_data_ind Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Alpine Halo9 devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the prh_l2_sar_data_ind function. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-22945

NVD description · AI analysis pending
8.8
group max
<1%
  • alpsalpine ilx-f509 firmware
CVE-2021-27971
Alps Alpine Touchpad Driver 10.3201.101.215 is vulnerable to DLL Injection.

Alps Alpine Touchpad Driver 10.3201.101.215 is vulnerable to DLL Injection.

NVD description · AI analysis pending
7.8<1%
  • alpsalpine touchpad driver
CVE-2018-10828
An issue was discovered in Alps Pointing-device Driver 10.1.101.207.

An issue was discovered in Alps Pointing-device Driver 10.1.101.207. ApMsgFwd.exe allows the current user to map and write to the "ApMsgFwd File Mapping Object" section. ApMsgFwd.exe uses the data written to this section as arguments to functions. This causes a denial of service condition when invalid pointers are written to the mapped section. This driver has been used with Dell, ThinkPad, and VAIO devices.

NVD description · AI analysis pending
5.51%
  • alps pointing-device driver