Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2002-1831

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service (crash) via an invite request that contains hex-encoded spaces (%20) in the Invitation-Cookie field.
0
Attacker Value
Unknown

CVE-2002-1698

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Buffer overflow in Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service (crash) via a long FN (font) argument in the message header.
0
Attacker Value
Unknown

CVE-2002-0155

Disclosure Date: May 29, 2002 (last updated February 22, 2025)
Buffer overflow in Microsoft MSN Chat ActiveX Control, as used in MSN Messenger 4.5 and 4.6, and Exchange Instant Messenger 4.5 and 4.6, allows remote attackers to execute arbitrary code via a long ResDLL parameter in the MSNChat OCX.
0
Attacker Value
Unknown

CVE-2002-0228

Disclosure Date: May 16, 2002 (last updated February 22, 2025)
Microsoft MSN Messenger allows remote attackers to use Javascript that references an ActiveX object to obtain sensitive information such as display names and web site navigation, and possibly more when the user is connected to certain Microsoft sites (or DNS-spoofed sites).
0