Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2534▼ 399 respecto a la semana anterior
Críticas / altas1321▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)96▼ 431 respecto a la semana anterior
11 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 7.9% | — | Cerulean Studios TrillianCerulean Studios Trillian PROCeruleanstudios TrillianCeruleanstudios Trillian PRO | 10/12/2008 | 16/6/2026 | Heap-based buffer overflow in the XML parser in the AIM plugin in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a malformed XML tag. | |
| Modificada | Alta (10) | 7.0% | — | Cerulean Studios TrillianCerulean Studios Trillian PROCeruleanstudios TrillianCeruleanstudios Trillian PRO | 10/12/2008 | 16/6/2026 | Double free vulnerability in the XML parser in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a crafted XML expression, related to the "IMG SRC ID." | |
| Modificada | Alta (10) | 7.9% | — | Cerulean Studios TrillianCerulean Studios Trillian PROCeruleanstudios TrillianCeruleanstudios Trillian PRO | 10/12/2008 | 16/6/2026 | Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a long image filename, related to "AIM IMG Tag Parsing." | |
| Modificada | Alta (9.3) | 6.1% | — | Ceruleanstudios Trillian PRO | 23/5/2008 | 16/6/2026 | Heap-based buffer overflow in the XML parsing functionality in talk.dll in Cerulean Studios Trillian Pro before 3.1.10.0 allows remote attackers to execute arbitrary code via a malformed attribute in an IMG tag. | |
| Modificada | Alta (9.3) | 6.2% | — | Cerulean Studios Trillian PRO | 3/5/2007 | 16/6/2026 | Multiple heap-based buffer overflows in the IRC component in Cerulean Studios Trillian Pro before 3.1.5.1 allow remote attackers to corrupt memory and possibly execute arbitrary code via (1) a URL with a long UTF-8 string, which triggers the overflow when the user highlights it, or (2) a font HTML tag with a face… | |
| Modificada | Alta (10) | 6.5% | — | Cerulean Studios Trillian PRO | 2/5/2007 | 16/6/2026 | Heap-based buffer overflow in the Rendezvous / Extensible Messaging and Presence Protocol (XMPP) component (plugins\rendezvous.dll) for Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to execute arbitrary code via a message that triggers the overflow from expansion that occurs during encoding. | |
| Modificada | Baja (2.1) | 0.33% | — | Cerulean Studios Trillian PRO | 3/8/2005 | 16/6/2026 | Trillian Pro 3.1 build 121, when checking Yahoo e-mail, stores the password in plaintext in a world readable file and does not delete the file after login, which allows local users to obtain sensitive information. | |
| Modificada | Alta (7.5) | 5.3% | — | Cerulean Studios TrillianCerulean Studios Trillian PRO | 2/3/2005 | 16/6/2026 | Buffer overflow in Trillian 3.0 and Pro 3.0 allows remote attackers to execute arbitrary code via a crafted PNG image file. | |
| Modificada | Alta (7.5) | 3.8% | — | Cerulean Studios TrillianCerulean Studios Trillian PRO | 31/12/2004 | 16/6/2026 | Integer overflow in Trillian 0.74 and earlier, and Trillian Pro 2.01 and earlier, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow. | |
| Modificada | Alta (7.5) | 3.7% | — | Cerulean Studios TrillianCerulean Studios Trillian PRO | 31/12/2004 | 16/6/2026 | Stack-based buffer overflow in Trillian 0.71 through 0.74f and Trillian Pro 1.0 through 2.01 allows remote attackers to execute arbitrary code via a Yahoo Messenger packet with a long key name. | |
| Modificada | Alta (10) | 5.7% | — | Cerulean Studios TrillianCerulean Studios Trillian PRO | 31/12/2002 | 16/6/2026 | Buffer overflow in the IDENT daemon (identd) in Trillian 0.6351, 0.725, 0.73, 0.74 and 1.0 pro allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long request. |