Vulnerabilities
Vulnerable Software
Mirabilis:  >> Icq  Security Vulnerabilities
The Message Session window in Mirabilis ICQ Pro 2003a allows remote attackers to cause a denial of service (CPU consumption) by spoofing the address of an ADS server and sending HTML with a -1 width in a table tag.
CVSS Score
5.0
EPSS Score
0.009
Published
2003-05-27
icqateimg32.dll parsing/rendering library in Mirabilis ICQ Pro 2003a allows remote attackers to cause a denial of service via malformed GIF89a headers that do not contain a GCT (Global Color Table) or an LCT (Local Color Table) after an Image Descriptor.
CVSS Score
5.0
EPSS Score
0.01
Published
2003-05-27
AOL ICQ 2002a Build 3722 allows remote attackers to cause a denial of service (crash) via a malformed .hpf file.
CVSS Score
5.0
EPSS Score
0.007
Published
2002-12-31
ICQ 2001a and 2002b allows remote attackers to cause a denial of service (memory consumption and hang) via a contact message with a large contacts number.
CVSS Score
5.0
EPSS Score
0.008
Published
2002-12-31
ICQ client 2001b, 2002a and 2002b allows remote attackers to cause a denial of service (CPU consumption or crash) via a message with a large number of emoticons.
CVSS Score
7.8
EPSS Score
0.006
Published
2002-12-31
ICQ 2001b Build 3659 allows remote attackers to cause a denial of service (crash) via a malformed picture that contains large height and width values, which causes the crash when viewed in Userdetails.
CVSS Score
5.0
EPSS Score
0.007
Published
2002-05-29
Buffer overflow in ICQ before 2001B Beta v5.18 Build #3659 allows remote attackers to execute arbitrary code via a Voice Video & Games request.
CVSS Score
7.5
EPSS Score
0.123
Published
2002-02-27
ICQ 2001a Alpha and earlier allows remote attackers to automatically add arbitrary UINs to an ICQ user's contact list via a URL to a web page with a Content-Type of application/x-icq, which is processed by Internet Explorer.
CVSS Score
5.0
EPSS Score
0.004
Published
2001-08-17
Mirabilis ICQ WebFront Plug-in ICQ2000b Build 3278 allows a remote attacker to create a denial of service via HTTP URL requests containing a large number of % characters.
CVSS Score
5.0
EPSS Score
0.006
Published
2001-06-27
The guestbook CGI program in ICQ Web Front service for ICQ 2000a, 99b, and others allows remote attackers to cause a denial of service via a URL with a long name parameter.
CVSS Score
5.0
EPSS Score
0.006
Published
2000-05-29


Contact Us

Shodan ® - All rights reserved