Show filters
54 Total Results
Displaying 21-30 of 54
Sort by:
Attacker Value
Unknown
CVE-2005-1655
Disclosure Date: May 18, 2005 (last updated February 22, 2025)
AOL Instant Messenger 5.5.x and earlier allows remote attackers to cause a denial of service (client crash) via an invalid smiley icon location in the sml parameter of a font tag.
0
Attacker Value
Unknown
CVE-2001-1420
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
AOL Instant Messenger (AIM) 4.7 allows remote attackers to cause a denial of service (application crash) via a long filename, possibly caused by a buffer overflow.
0
Attacker Value
Unknown
CVE-2004-1232
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Stack-based buffer overflow in the code that sends images in Gadu-Gadu allows remote attackers to execute arbitrary code via a large image filename.
0
Attacker Value
Unknown
CVE-2004-1233
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Integer overflow in Gadu-Gadu allows remote attackers to cause a denial of service (disk consumption) via a user packet to the DCC file transfer capability with an invalid file length.
0
Attacker Value
Unknown
CVE-2004-1231
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in Gadu-Gadu allows remote attackers to read arbitrary files via .. (dot dot) sequences in a DCC connection with a CTCP packet that contains a 1 as the type and a 4 as the subtype.
0
Attacker Value
Unknown
CVE-2004-1230
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Gadu-Gadu allows remote attackers to gain sensitive information and read files from the _cache directory of other users via a DCC connection and a CTCP packet that contains a 1 as the type and a 4 as the subtype.
0
Attacker Value
Unknown
CVE-2004-1229
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Cross-site scripting vulnerability in the parser for Gadu-Gadu allows remote attackers to inject arbitrary web script or HTML via (1) http:// or (2) news:// URLs, a different vulnerability than CVE-2004-1410.
0
Attacker Value
Unknown
CVE-2004-1410
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in Gadu-Gadu build 155 and earlier allows remote attackers to inject arbitrary web script via a URL, which is echoed in a popup window that displays a parsing error message, a different vulnerability than CVE-2004-1229.
0
Attacker Value
Unknown
CVE-2004-1414
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Gadu-Gadu 6.1 build 156 allows remote attackers to cause a denial of service (application hang) via a message that contains many special strings that are converted to images.
0
Attacker Value
Unknown
CVE-2004-2373
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
The Buddy icon file for AOL Instant Messenger (AIM) 4.3 through 5.5 is created in a predictable location, which may allow remote attackers to use a shell: URI to exploit other vulnerabilities that involve predictable locations.
0