NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 54646 | CVE-2007-2479 | Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to obtain potentially sensitive information via long CTCP PING messages that contain UTF-8 characters, which generates a malformed response that is not truncated by a newline, which can cause portions of a server message to be sent to the attacker. | 2 | 7.1 | High | 2017-01-07 | 2016-08-31 | View | |
| 51948 | CVE-2009-4831 | Cerulean Studios Trillian 3.1 Basic does not check SSL certificates during MSN authentication, which allows remote attackers to obtain MSN credentials via a man-in-the-middle attack with a spoofed SSL certificate. | 2 | 5.8 | Medium | 2017-01-07 | 2010-04-30 | View | |
| 68803 | CVE-2005-3141 | Cerulean Studios Trillian 3.0 allows remote attackers to cause a denial of service (crash) via a reverse direct connection from a different client, as demonstrated using LICQ. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 81113 | CVE-2002-2162 | Cerulean Studios Trillian 0.73 and earlier use weak encrypttion (XOR) for storing user passwords in .ini files in the Trillian directory, which allows local users to gain access to other user accounts. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 31771 | CVE-2014-3604 | Certificates.java in Not Yet Commons SSL before 0.3.15 does not properly verify that the server hostname matches a domain name in the subject"s Common Name (CN) field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | 2 | 6.8 | Medium | 2017-01-19 | 2016-05-05 | View |
Page 15344 of 17672, showing 5 records out of 88360 total, starting on record 76716, ending on 76720