Skip to content

Keysight vulnerabilities

3 CVEs tracked

In our reports, the vendor Keysight appears in the context of critical vulnerabilities within the IxChariot Endpoint product. The main focus is on unauthenticated remote code execution vulnerabilities, including one granting administrative privileges (CVE-2026-49435), along with heap-based (CVE-2017-20241) and stack-based (CVE-2017-20242) buffer overflows. Defenders should prioritize strict network segmentation, ensure that IxChariot Endpoint software is updated to the latest version, and monitor network traffic targeting this service for anomalous crafted packets.

Azərbaycanca: Hesabatlarımızda Keysight vendoru IxChariot Endpoint məhsulu ilə bağlı kritik zəifliklər kontekstində görünür. Əsas diqqət mərkəzində olan məsələ, autentifikasiya olunmamış uzaqdan hücumçuya xüsusi hazırlanmış paket göndərərək sistemi ələ keçirməyə imkan verən boşluqlardır. Bunlara ən kritik olaraq inzibati imtiyazlarla kod icrasına (CVE-2026-49435), eləcə də potensial kod icrasına yol aça bilən yığın (heap-based) (CVE-2017-20241) və yığma (stack-based) (CVE-2017-20242) bufer daşmaları daxildir. Müdafiəçilər şəbəkə seqmentasiyasına ciddi nəzarət etməli, IxChariot Endpoint proqramını ən son versiyaya yeniləməli və bu xidmətə gələn anomaliyalı şəbəkə trafikini monitorinq etməlidirlər.

This vendor's CVEs3

This hub is built from skopnix's own reporting on Keysight: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.