VendorsCerulean Studiostrillian_pro3.1_build_121
Vulnerabilities

Cerulean Studios Trillian Pro 3.1_build_121

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2008-5401
Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a long image filename, related to "AIM IMG Tag Parsing."
Published 2008-12-09 · Modified
10.0EPSS 0.079
CVE-2008-5403
Heap-based buffer overflow in the XML parser in the AIM plugin in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a malformed XML tag.
Published 2008-12-09 · Modified
10.0EPSS 0.079
CVE-2008-5402
Double free vulnerability in the XML parser in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a crafted XML expression, related to the "IMG SRC ID."
Published 2008-12-09 · Modified
10.0EPSS 0.070
CVE-2005-2444
Trillian Pro 3.1 build 121, when checking Yahoo e-mail, stores the password in plaintext in a world readable file and does not delete the file after login, which allows local users to obtain sensitive information.
Published 2005-08-03 · Modified
2.1EPSS 0.003