← Back

Tonec

tonec

4 CVEs • 1 product

Products (1)

Click to collapse
Toggle

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tonec
1Internet Download Manager
Jul 5, 2026
Nov 5, 2025
N/A· v4
9.1 CRITICAL· v3
N/A· v2
Tonec Internet Download Manager 6.42.41.1 and earlier suffers from Missing SSL Certificate Validation, which allows attackers to bypass update protections.
1Tonec
1Internet Download Manager
Jun 17, 2026
Oct 22, 2021
N/A· v4
6.7 MEDIUM· v3
7.2 HIGH· v2
Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Search function. This vulnerability allows attackers to escalate local process privileges via unspecified vectors.
1Tonec
1Internet Download Manager
Jun 17, 2026
Oct 22, 2021
N/A· v4
7.1 HIGH· v3
6.6 MEDIUM· v2
Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function. This vulnerability allows attackers to escalate local process privileges via a crafted ef2 file.
1Tonec
1Internet Download Manager
Apr 29, 2026
May 6, 2010
N/A· v4
N/A· v3
9.3 HIGH· v2
Stack-based buffer overflow in Internet Download Manager (IDM) before 5.19 allows remote attackers to execute arbitrary code via a crafted FTP URI that causes unspecified "test sequences" to be sent from client to server...Show more
Stack-based buffer overflow in Internet Download Manager (IDM) before 5.19 allows remote attackers to execute arbitrary code via a crafted FTP URI that causes unspecified "test sequences" to be sent from client to server.Show less