Ingate develops a focused portfolio of session border controllers and security appliances, with its vulnerability exposures concentrated in the Firewall and SIPArator product lines that mediate VoIP and network access. The recurring weakness classes—spanning authentication bypass, input validation, memory-safety issues, and information disclosure—reflect the parsing and access-control complexity inherent to protocol-bridging and session-management appliances. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ingate over time
Signals from CVEs in this vendor scope (18 CVEs).
18 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-0960HIGH SNMPv3 HMAC verification in (1) Net-SNMP 5.2.x before 5.2.4.1, 5.3.x before 5.3.2.1, and 5.4.x before 5.4.1.1; (2) UCD-SNMP; (3) eCos; (4) Juniper Session and Resource Control (SRC | Jun 10, 2008 | 10.0 | 77 | NO | YES |
CVE-2007-6092HIGH Buffer overflow in libsrtp in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 has unknown impact and attack vectors. NOTE: it is not clear whether this issue crosses privi | Nov 22, 2007 | 10.0 | 26 | NO | NO |
CVE-2007-6097HIGH Unspecified vulnerability in the ICMP implementation in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 has unknown impact and remote attack vectors, related to ICMP packet | Nov 22, 2007 | 10.0 | 26 | NO | NO |
CVE-2007-6099HIGH Unspecified vulnerability in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 might leave "media pinholes" open upon a restart of the SIP module, which might make it easier | Nov 22, 2007 | 10.0 | 26 | NO | NO |
CVE-2003-1112HIGH The Session Initiation Protocol (SIP) implementation in Ingate Firewall and Ingate SIParator before 3.1.3 allows remote attackers to cause a denial of service and possibly execute | Dec 31, 2003 | 7.5 | 21 | NO | NO |
CVE-2007-6098HIGH Ingate Firewall before 4.6.0 and SIParator before 4.6.0 do not log truncated (1) ICMP, (2) UDP, and (3) TCP packets, which has unknown impact and remote attack vectors; and do not | Nov 22, 2007 | 7.5 | 20 | NO | NO |
CVE-2005-4464HIGH Ingate Firewall before 4.3.4 and SIParator before 4.3.4 allows remote attackers to cause a denial of service (kernel deadlock) by sending a SYN packet for a TCP stream, which requi | Dec 22, 2005 | 7.8 | 20 | NO | NO |
CVE-2008-0263MEDIUM The SIP module in Ingate Firewall before 4.6.1 and SIParator before 4.6.1 does not reuse SIP media ports in unspecified call hold and send-only stream scenarios, which allows remot | Jan 15, 2008 | 5.0 | 19 | NO | NO |
CVE-2007-6093HIGH The SRTP implementation in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 allows remote attackers to cause a denial of service (kernel crash) via an RTCP index that is "mu | Nov 22, 2007 | 7.1 | 19 | NO | NO |
CVE-2007-0334HIGH Unspecified vulnerability in the SIP module in InGate Firewall and SIParator before 4.5.1 allows remote attackers to conduct replay attacks on the authentication mechanism via unkn | Jan 18, 2007 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (18 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ingate.
Media articles that mention a CVE ID that affects a product developed by Ingate — matched by CVE ID, not by vendor name.