Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-2478

Опубликовано: 03 мая 2007
Источник: nvd
CVSS2: 9.3
EPSS Средний

Описание

Multiple heap-based buffer overflows in the IRC component in Cerulean Studios Trillian Pro before 3.1.5.1 allow remote attackers to corrupt memory and possibly execute arbitrary code via (1) a URL with a long UTF-8 string, which triggers the overflow when the user highlights it, or (2) a font HTML tag with a face attribute containing a long UTF-8 string.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:cerulean_studios:trillian_pro:*:*:*:*:*:*:*:*
Версия до 3.1.5.0 (включая)

EPSS

Процентиль: 95%
0.20801
Средний

9.3 Critical

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Multiple heap-based buffer overflows in the IRC component in Cerulean Studios Trillian Pro before 3.1.5.1 allow remote attackers to corrupt memory and possibly execute arbitrary code via (1) a URL with a long UTF-8 string, which triggers the overflow when the user highlights it, or (2) a font HTML tag with a face attribute containing a long UTF-8 string.

EPSS

Процентиль: 95%
0.20801
Средний

9.3 Critical

CVSS2

Дефекты

NVD-CWE-Other