NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
54646  CVE-2007-2479  Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to obtain potentially sensitive information via long CTCP PING messages that contain UTF-8 characters, which generates a malformed response that is not truncated by a newline, which can cause portions of a server message to be sent to the attacker.    7.1  High  2017-01-07  2016-08-31  View
51948  CVE-2009-4831  Cerulean Studios Trillian 3.1 Basic does not check SSL certificates during MSN authentication, which allows remote attackers to obtain MSN credentials via a man-in-the-middle attack with a spoofed SSL certificate.    5.8  Medium  2017-01-07  2010-04-30  View
68803  CVE-2005-3141  Cerulean Studios Trillian 3.0 allows remote attackers to cause a denial of service (crash) via a reverse direct connection from a different client, as demonstrated using LICQ.    Medium  2017-01-03  2016-10-17  View
81113  CVE-2002-2162  Cerulean Studios Trillian 0.73 and earlier use weak encrypttion (XOR) for storing user passwords in .ini files in the Trillian directory, which allows local users to gain access to other user accounts.    4.6  Medium  2017-01-05  2008-09-05  View
31771  CVE-2014-3604  Certificates.java in Not Yet Commons SSL before 0.3.15 does not properly verify that the server hostname matches a domain name in the subject"s Common Name (CN) field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.    6.8  Medium  2017-01-19  2016-05-05  View

Page 15344 of 17672, showing 5 records out of 88360 total, starting on record 76716, ending on 76720

Actions