Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown
CVE-2009-1394
Disclosure Date: June 26, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in Motorola Timbuktu Pro 8.6.5 on Windows allows remote attackers to execute arbitrary code by sending a long malformed string over the PlughNTCommand named pipe.
0
Attacker Value
Unknown
CVE-2008-1118
Disclosure Date: March 14, 2008 (last updated October 04, 2023)
Timbuktu Pro 8.6.5 for Windows, and possibly 8.7 for Mac OS X, does not perform input validation before logging information fields taken from packets from a remote peer, which allows remote attackers to generate crafted log entries, and possibly avoid detection of attacks, via modified (1) computer name, (2) user name, and (3) IP address fields.
0
Attacker Value
Unknown
CVE-2008-1337
Disclosure Date: March 14, 2008 (last updated October 04, 2023)
The instant message service in Timbuktu Pro 8.6.5 RC 229 and earlier for Windows allows remote attackers to cause (1) a denial of service (daemon crash) via an invalid Version field or (2) a denial of service (CPU consumption and daemon termination) via an invalid or partial message.
0
Attacker Value
Unknown
CVE-2008-1117
Disclosure Date: March 14, 2008 (last updated October 04, 2023)
Directory traversal vulnerability in the Notes (aka Flash Notes or instant messages) feature in tb2ftp.dll in Timbuktu Pro 8.6.5 for Windows, and possibly 8.7 for Mac OS X, allows remote attackers to upload files to arbitrary locations via a destination filename with a \ (backslash) character followed by ../ (dot dot slash) sequences. NOTE: this can be leveraged for code execution by writing to a Startup folder. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2007-4220.
0
Attacker Value
Unknown
CVE-2004-0810
Disclosure Date: December 23, 2004 (last updated February 22, 2025)
Buffer overflow in Netopia Timbuktu 7.0.3 allows remote attackers to cause a denial of service (server process crash) via a certain data string that is sent to multiple simultaneous client connections to TCP port 407.
0
Attacker Value
Unknown
CVE-2002-0135
Disclosure Date: March 25, 2002 (last updated February 22, 2025)
Netopia Timbuktu Pro 6.0.1 and earlier allows remote attackers to cause a denial of service (crash) via a series of connections to one of the ports (1417 - 1420).
0
Attacker Value
Unknown
CVE-2000-0142
Disclosure Date: February 11, 2000 (last updated February 22, 2025)
The authentication protocol in Timbuktu Pro 2.0b650 allows remote attackers to cause a denial of service via connections to port 407 and 1417.
0
Attacker Value
Unknown
CVE-2000-0086
Disclosure Date: January 18, 2000 (last updated February 22, 2025)
Netopia Timbuktu Pro sends user IDs and passwords in cleartext, which allows remote attackers to obtain them via sniffing.
0