Show filters
22 Total Results
Displaying 1-10 of 22
Sort by:
Attacker Value
Unknown

CVE-2024-21411

Disclosure Date: March 12, 2024 (last updated January 12, 2025)
Skype for Consumer Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2011-2074

Disclosure Date: May 10, 2011 (last updated October 04, 2023)
Unspecified vulnerability in the client in Skype 5.x before 5.1.0.922 on Mac OS X allows remote authenticated users to execute arbitrary code or cause a denial of service (application crash) via a crafted message.
0
Attacker Value
Unknown

CVE-2011-1717

Disclosure Date: April 18, 2011 (last updated October 04, 2023)
Skype for Android stores sensitive user data without encryption in sqlite3 databases that have weak permissions, which allows local applications to read user IDs, contacts, phone numbers, date of birth, instant message logs, and other private information.
0
Attacker Value
Unknown

CVE-2010-3136

Disclosure Date: August 26, 2010 (last updated October 04, 2023)
Untrusted search path vulnerability in Skype 4.2.0.169 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wab32.dll that is located in the same folder as a .skype file.
0
Attacker Value
Unknown

CVE-2009-4741

Disclosure Date: March 26, 2010 (last updated October 04, 2023)
Unspecified vulnerability in the Extras Manager before 2.0.0.67 in Skype before 4.1.0.179 on Windows has unknown impact and attack vectors.
0
Attacker Value
Unknown

CVE-2008-5697

Disclosure Date: December 22, 2008 (last updated October 04, 2023)
The skype_tool.copy_num method in the Skype extension BETA 2.2.0.95 for Firefox allows remote attackers to write arbitrary data to the clipboard via a string argument.
0
Attacker Value
Unknown

CVE-2008-2545

Disclosure Date: June 06, 2008 (last updated October 04, 2023)
Skype 3.6.0.248, and other versions before 3.8.0.139, uses a case-sensitive comparison when checking for dangerous extensions, which allows user-assisted remote attackers to bypass warning dialogs and possibly execute arbitrary code via a file: URI with a dangerous extension that uses a different case.
0
Attacker Value
Unknown

CVE-2008-1805

Disclosure Date: June 06, 2008 (last updated October 04, 2023)
Incomplete blacklist vulnerability in Skype 3.6.0.248, and other versions before 3.8.0.139, allows user-assisted remote attackers to bypass warning dialogs and possibly execute arbitrary code via a file: URI that ends in an executable extension that is not covered by the blacklist.
0
Attacker Value
Unknown

CVE-2008-0582

Disclosure Date: February 05, 2008 (last updated October 04, 2023)
Cross-zone scripting vulnerability in the Internet Explorer web control in Skype 3.1 through 3.6.0.244 on Windows allows remote attackers to inject arbitrary web script or HTML in the Local Machine Zone via the Full Name field of a reviewer of a business item entry, accessible through (1) the SkypeFind dialog and (2) a skype:?skypefind URI for the skype: URI handler.
0
Attacker Value
Unknown

CVE-2008-0583

Disclosure Date: February 05, 2008 (last updated October 04, 2023)
Cross-zone scripting vulnerability in the Internet Explorer web control in Skype 3.6.0.244, and earlier 3.5.x and 3.6.x versions, on Windows allows user-assisted remote attackers to inject arbitrary web script or HTML in the Local Machine Zone via the Description and unspecified other metadata fields of a Metacafe movie submitted by Metacafe Pro to the Skype video gallery, accessible through a search within the (1) "Add video to chat" or (2) "Add video to mood" dialog, a different vector than CVE-2008-0454.
0