Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2534▼ 399 respecto a la semana anterior
Críticas / altas1321▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)96▼ 431 respecto a la semana anterior
–

11 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (10)7.9%—Cerulean Studios TrillianCerulean Studios Trillian PROCeruleanstudios TrillianCeruleanstudios Trillian PRO10/12/200816/6/2026
Heap-based buffer overflow in the XML parser in the AIM plugin in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a malformed XML tag.
ModificadaAlta (10)7.0%—Cerulean Studios TrillianCerulean Studios Trillian PROCeruleanstudios TrillianCeruleanstudios Trillian PRO10/12/200816/6/2026
Double free vulnerability in the XML parser in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a crafted XML expression, related to the "IMG SRC ID."
ModificadaAlta (10)7.9%—Cerulean Studios TrillianCerulean Studios Trillian PROCeruleanstudios TrillianCeruleanstudios Trillian PRO10/12/200816/6/2026
Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a long image filename, related to "AIM IMG Tag Parsing."
ModificadaAlta (9.3)6.1%—Ceruleanstudios Trillian PRO23/5/200816/6/2026
Heap-based buffer overflow in the XML parsing functionality in talk.dll in Cerulean Studios Trillian Pro before 3.1.10.0 allows remote attackers to execute arbitrary code via a malformed attribute in an IMG tag.
ModificadaAlta (9.3)6.2%—Cerulean Studios Trillian PRO3/5/200716/6/2026
Multiple heap-based buffer overflows in the IRC component in Cerulean Studios Trillian Pro before 3.1.5.1 allow remote attackers to corrupt memory and possibly execute arbitrary code via (1) a URL with a long UTF-8 string, which triggers the overflow when the user highlights it, or (2) a font HTML tag with a face…
ModificadaAlta (10)6.5%—Cerulean Studios Trillian PRO2/5/200716/6/2026
Heap-based buffer overflow in the Rendezvous / Extensible Messaging and Presence Protocol (XMPP) component (plugins\rendezvous.dll) for Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to execute arbitrary code via a message that triggers the overflow from expansion that occurs during encoding.
ModificadaBaja (2.1)0.33%—Cerulean Studios Trillian PRO3/8/200516/6/2026
Trillian Pro 3.1 build 121, when checking Yahoo e-mail, stores the password in plaintext in a world readable file and does not delete the file after login, which allows local users to obtain sensitive information.
ModificadaAlta (7.5)5.3%—Cerulean Studios TrillianCerulean Studios Trillian PRO2/3/200516/6/2026
Buffer overflow in Trillian 3.0 and Pro 3.0 allows remote attackers to execute arbitrary code via a crafted PNG image file.
ModificadaAlta (7.5)3.8%—Cerulean Studios TrillianCerulean Studios Trillian PRO31/12/200416/6/2026
Integer overflow in Trillian 0.74 and earlier, and Trillian Pro 2.01 and earlier, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow.
ModificadaAlta (7.5)3.7%—Cerulean Studios TrillianCerulean Studios Trillian PRO31/12/200416/6/2026
Stack-based buffer overflow in Trillian 0.71 through 0.74f and Trillian Pro 1.0 through 2.01 allows remote attackers to execute arbitrary code via a Yahoo Messenger packet with a long key name.
ModificadaAlta (10)5.7%—Cerulean Studios TrillianCerulean Studios Trillian PRO31/12/200216/6/2026
Buffer overflow in the IDENT daemon (identd) in Trillian 0.6351, 0.725, 0.73, 0.74 and 1.0 pro allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long request.