Vulnerabilities (CVE)

Filtered by vendor Mirabilis Subscribe
Total 27 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0564 1 Mirabilis 1 Icq 2025-04-03 5.0 MEDIUM N/A
The guestbook CGI program in ICQ Web Front service for ICQ 2000a, 99b, and others allows remote attackers to cause a denial of service via a URL with a long name parameter.
CVE-2006-2303 1 Mirabilis 1 Icq 2025-04-03 6.4 MEDIUM N/A
Cross-Application Scripting (XAS) vulnerability in ICQ Client 5.04 build 2321 and earlier allows remote attackers to inject arbitrary web script from one application into another via a banner, which is processed in the My Computer zone using the Internet Explorer COM object.
CVE-2005-3433 1 Mirabilis 1 Icq 2025-04-03 5.1 MEDIUM N/A
Buffer overflow in Mirabilis ICQ 2003a allows user-assisted attackers to execute arbitrary code by convincing a user to enter long strings into the First Name and Last Name fields.
CVE-2003-0239 1 Mirabilis 1 Icq 2025-04-03 5.0 MEDIUM N/A
icqateimg32.dll parsing/rendering library in Mirabilis ICQ Pro 2003a allows remote attackers to cause a denial of service via malformed GIF89a headers that do not contain a GCT (Global Color Table) or an LCT (Local Color Table) after an Image Descriptor.
CVE-2002-0254 1 Mirabilis 1 Icq 2025-04-03 5.0 MEDIUM N/A
ICQ 2001b Build 3659 allows remote attackers to cause a denial of service (crash) via a malformed picture that contains large height and width values, which causes the crash when viewed in Userdetails.
CVE-2002-2329 1 Mirabilis 1 Icq 2025-04-03 7.8 HIGH N/A
ICQ client 2001b, 2002a and 2002b allows remote attackers to cause a denial of service (CPU consumption or crash) via a message with a large number of emoticons.
CVE-1999-0474 1 Mirabilis 1 Icq 2025-04-03 5.0 MEDIUM N/A
The ICQ Webserver allows remote attackers to use .. to access arbitrary files outside of the user's personal directory.