Poptop maintains PPTP Server, a point-to-point tunneling protocol implementation that provides remote access and VPN connectivity, with observed vulnerabilities clustering around memory-safety issues and bounds-checking weaknesses. Treat this as a focused vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Poptop over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2003-0213HIGH ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a | May 12, 2003 | 7.5 | 77 | NO | YES |
CVE-2003-1455HIGH Multiple buffer overflows in the launch_bcrelay function in pptpctrl.c in PoPToP 1.1.4-b1 through PoPToP 1.1.4-b3 allow local users to execute arbitrary code. | Dec 31, 2003 | 7.2 | 23 | NO | NO |
CVE-2007-0244MEDIUM pptpgre.c in PoPToP Point to Point Tunneling Server (pptpd) before 1.3.4 allows remote attackers to cause a denial of service (PPTP connection tear-down) via (1) GRE packets with o | May 11, 2007 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Poptop.
Media articles that mention a CVE ID that affects a product developed by Poptop — matched by CVE ID, not by vendor name.