Vulnerability index

Browse CVEs

42 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Messenger MEDIUM 5.0
CVE-2005-1618

The YMSGR URL handler in Yahoo! Messenger 5.x through 6.0 allows remote attackers to cause a denial of service (disconnect) via a room login or a roo…

Mitigation only
Fix from $1,600 2005-05-16
Messenger HIGH 7.5
CVE-2005-0737

Buffer overflow in Yahoo! Messenger allows remote attackers to execute arbitrary code via the offline mode.

No fix yet
Fix from $1,950 2005-05-02
Messenger MEDIUM 5.0
CVE-2005-0243

Yahoo! Messenger 6.0.0.1750, and possibly other versions before 6.0.0.1921, does not properly display long filenames in file dialog boxes, which coul…

Patch available
Fix from $1,600 2005-02-17
Messenger HIGH 7.5
CVE-2004-0043

Buffer overflow in Yahoo Instant Messenger 5.6.0.1351 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute a…

Fix: after 5.6.0.1351
Fix from $1,950 2004-02-03
Messenger HIGH 7.5
CVE-2002-1665

Buffer overflow in Yahoo! Messenger before February 2002 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary …

Patch available
Fix from $1,950 2002-12-31
Messenger MEDIUM 6.4
CVE-2002-1664

Yahoo! Messenger before February 2002 allows remote attackers to add arbitrary users to another user's buddy list and possibly obtain sensitive infor…

Patch available
Fix from $1,600 2002-12-31
Messenger MEDIUM 5.8
CVE-2002-2361

The installer in Yahoo! Messenger 4.0, 5.0 and 5.5 does not verify package signatures which could allow remote attackers to install trojan programs v…

Mitigation only
Fix from $1,600 2002-12-31
Messenger HIGH 7.5
CVE-2002-0032

Yahoo! Messenger 5,0,0,1064 and earlier allows remote attackers to execute arbitrary script as other users via the addview parameter of a ymsgr URI.

Patch available
Fix from $1,950 2002-07-26
Messenger HIGH 7.5
CVE-2002-0320EPSS 7%

Buffer overflow in Yahoo! Messenger 5.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long (1) messa…

Patch available
Fix from $1,950 2002-06-25
Messenger HIGH 7.5
CVE-2002-0322

Yahoo! Messenger 4.0 sends user passwords in cleartext, which could allow remote attackers to gain privileges of other users via sniffing.

Mitigation only
Fix from $1,950 2002-06-25
Messenger MEDIUM 5.0
CVE-2002-0321

Yahoo! Messenger 5.0 allows remote attackers to spoof other users by modifying the username and using the spoofed username for social engineering or …

Patch available
Fix from $1,600 2002-06-25
Pager MEDIUM 5.0
CVE-2000-0047

Buffer overflow in Yahoo Pager/Messenger client allows remote attackers to cause a denial of service via a long URL within a message.

Mitigation only
Fix from $1,600 1999-10-01