Skip to main content

Vendor archive

icq CVEs

Beta · best-effort

8 CVEs tagged to vendor icq2 Critical, 1 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2011-0487

Published Jan 18, 2011

ICQ 7 does not verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a crafted file that is fetched through an automatic-updat…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-7136

Published Sep 1, 2009

toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a long argument to the (1) RequestURL, (2) GetPropertyById, o…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-7135

Published Sep 1, 2009

toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a long argument to the IsChecked method, a different vector t…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-1915

Published Jun 4, 2009

Stack-based buffer overflow in the URL Search Hook (ICQToolBar.dll) in ICQ 6.5 allows remote attackers to cause a denial of service (persistent crash) and possibly execute arbitra…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1920

Published Apr 23, 2008

Heap-based buffer overflow in the boxelyRenderer module in the Personal Status Manager feature in ICQ 6.0 build 6043 allows remote attackers to cause a denial of service (crash) o…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1120

Published Mar 3, 2008

Format string vulnerability in the embedded Internet Explorer component for Mirabilis ICQ 6 build 6043 allows remote servers to execute arbitrary code or cause a denial of service…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0552

Published Jun 6, 2000

ICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not delete it, which allows local users to obtain sensitive information.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-1342

Published Oct 17, 1999

ICQ ActiveList Server allows remote attackers to cause a denial of service (crash) via malformed packets to the server's UDP port.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1