Vulnerabilities (CVE)

Filtered by vendor Mirabilis Subscribe
Total 27 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-1305 1 Mirabilis 1 Icq 2024-02-04 5.0 MEDIUM N/A
ICQ 2001a Alpha and earlier allows remote attackers to automatically add arbitrary UINs to an ICQ user's contact list via a URL to a web page with a Content-Type of application/x-icq, which is processed by Internet Explorer.
CVE-1999-0474 1 Mirabilis 1 Icq 2024-02-04 5.0 MEDIUM N/A
The ICQ Webserver allows remote attackers to use .. to access arbitrary files outside of the user's personal directory.
CVE-2000-0046 1 Mirabilis 1 Icq 2024-02-04 7.5 HIGH N/A
Buffer overflow in ICQ 99b 1.1.1.1 client allows remote attackers to execute commands via a malformed URL within an ICQ message.
CVE-2002-1743 1 Mirabilis 1 Icq 2024-02-04 5.0 MEDIUM N/A
AOL ICQ 2002a Build 3722 allows remote attackers to cause a denial of service (crash) via a malformed .hpf file.
CVE-2003-0236 1 Mirabilis 1 Icq 2024-02-04 7.5 HIGH N/A
Integer signedness errors in the POP3 client for Mirabilis ICQ Pro 2003a allow remote attackers to execute arbitrary code via the (1) Subject or (2) Date headers.
CVE-1999-1289 1 Mirabilis 1 Icq 2024-02-04 7.5 HIGH N/A
ICQ 98 beta on Windows NT leaks the internal IP address of a client in the TCP data segment of an ICQ packet instead of the public address (e.g. through NAT), which provides remote attackers with potentially sensitive information about the client or the internal network configuration.
CVE-2003-0235 1 Mirabilis 1 Icq 2024-02-04 7.5 HIGH N/A
Format string vulnerability in POP3 client for Mirabilis ICQ Pro 2003a allows remote malicious servers to execute arbitrary code via format strings in the response to a UIDL command.