CVE-2025-0282: Ivanti Connect Secure - Stack-based Buffer Overflow
HoneyLabs honeypots recorded 8 probes matching CVE-2025-0282 from 8 distinct source IP addresses in the last 7 days. Severity is rated critical.
This CVE is on CISA's Known Exploited Vulnerabilities list.
Request paths that identify it
- /dana/home/index.cgi
- /dana-na/auth/url_6/welcome.cgi
- /dana-na/auth/url_default/welcome.cgi
Addresses probing it
| Source IP | Probes | Network | Country |
|---|---|---|---|
| 161.35.105.198 | 1 | DigitalOcean, LLC | United States |
| 134.209.53.36 | 1 | DigitalOcean, LLC | United States |
| 165.227.16.142 | 1 | DigitalOcean, LLC | United States |
| 69.164.205.196 | 1 | Akamai Connected Cloud | United States |
| 192.155.89.228 | 1 | Akamai Connected Cloud | United States |
| 67.205.166.86 | 1 | DigitalOcean, LLC | United States |
| 167.172.158.11 | 1 | DigitalOcean, LLC | United States |
| 68.183.138.50 | 1 | DigitalOcean, LLC | United States |
Networks it comes from
| ASN | Organisation | Probes | Source IPs |
|---|---|---|---|
| AS14061 | DigitalOcean, LLC | 6 | 6 |
| AS63949 | Akamai Connected Cloud | 2 | 2 |
Captured requests
- /dana-na/auth/url_default/welcome.cgi
HTTP client fingerprints (JA4H)
- ge11nn0400_9c3956fad5da
- ge11nn0300_dedeb29cc523
CVE report
CVE report
Open a specific CVE from the CVE tracker.