NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 31771 | CVE-2014-3604 | Certificates.java in Not Yet Commons SSL before 0.3.15 does not properly verify that the server hostname matches a domain name in the subject"s Common Name (CN) field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | 2 | 6.8 | Medium | 2017-01-19 | 2016-05-05 | View | |
| 81113 | CVE-2002-2162 | Cerulean Studios Trillian 0.73 and earlier use weak encrypttion (XOR) for storing user passwords in .ini files in the Trillian directory, which allows local users to gain access to other user accounts. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 68803 | CVE-2005-3141 | Cerulean Studios Trillian 3.0 allows remote attackers to cause a denial of service (crash) via a reverse direct connection from a different client, as demonstrated using LICQ. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 51948 | CVE-2009-4831 | Cerulean Studios Trillian 3.1 Basic does not check SSL certificates during MSN authentication, which allows remote attackers to obtain MSN credentials via a man-in-the-middle attack with a spoofed SSL certificate. | 2 | 5.8 | Medium | 2017-01-07 | 2010-04-30 | View | |
| 54646 | CVE-2007-2479 | Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to obtain potentially sensitive information via long CTCP PING messages that contain UTF-8 characters, which generates a malformed response that is not truncated by a newline, which can cause portions of a server message to be sent to the attacker. | 2 | 7.1 | High | 2017-01-07 | 2016-08-31 | View |
Page 2329 of 17672, showing 5 records out of 88360 total, starting on record 11641, ending on 11645