Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4355 articles · 196337 vulns · 36/41 feeds (7d)
← Back to list
6.2
CVE-2018-25423EXPLOITED
arm · whois

Arm Whois 3.11 Denial of Service via Buffer Overflow

Description

Arm Whois 3.11 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized input string. Attackers can paste a malicious buffer of 700 bytes into the IP address or domain input field to trigger a denial of service condition.

Affected Products

VendorProductVersions
armwhois3.11

References

  • https://www.exploit-db.com/exploits/45762(exploit)
  • http://www.armcode.com/(product)
  • http://www.armcode.com/downloads/arm-whois.exe(product)
  • https://www.vulncheck.com/advisories/arm-whois-denial-of-service-via-buffer-overflow(third-party-advisory)

Related News (1 articles)

Tier C
VulDB85d ago
CVE-2018-25423 | Armcode Arm Whois 3.11 buffer overflow (Exploit 45762)
→ No new info (linked only)
CVSS 3.16.2 NONE
CISA KEV❌ No
Actively exploited✅ Yes
CWECWE-120
PublishedMay 30, 2026
Last enriched85d agov2
Trending Score0
Source articles1
Independent1
Info Completeness8/14
Missing: cvss, epss, kev, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (2)

NONECVE-2025-10263EXP
CVE-2025-10263: Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4
Trending: 19
NONECVE-2018-25427EXP
Arm Whois 3.11 Buffer Overflow via SEH Overwrite

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
May 30, 2026
Discovered by ZDM
May 30, 2026
Updated: severity, exploitAvailable, activelyExploited
May 30, 2026
Actively Exploited
Jun 1, 2026
Exploit Available
Jun 1, 2026

Version History

v2
Last enriched 85d ago
v2Tier C85d ago

Updated severity to CRITICAL and marked exploit as available and actively exploited.

severityexploitAvailableactivelyExploited
via VulDB
v185d ago

Initial creation