icq records
8 published records for vendor icq.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 4
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-20 Improper Input Validation2
- CWE-134 Use of Externally-Controlled Format String1
- CWE-459 Incomplete Cleanup1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
8 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
38Monitor | CVE-2008-1120No exploit | Format string vulnerability in the embedded Internet Explorer component for Mirabilis ICQ 6 build 6043 allows remote servers to execute arbiicq · mirabilis icq · CWE-134 | Critical9.3 | — | 2.7% | Mar 3, 2008 |
38Monitor | CVE-2011-0487No exploit | ICQ 7 does not verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a crafted file thaicq · icq · CWE-94 | Critical9.3 | — | 2.5% | Jan 18, 2011 |
32Monitor | CVE-2008-1920Proof of concept | Heap-based buffer overflow in the boxelyRenderer module in the Personal Status Manager feature in ICQ 6.0 build 6043 allows remote attackersicq · mirabilis icq · CWE-119 | High7.5 | — | 5.8% | Apr 23, 2008 |
22Monitor | CVE-2000-0552Proof of concept | ICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not delete it, which allows local users to obticq · icq · CWE-459 | Medium5.5 | — | 1.1% | Jun 6, 2000 |
20Monitor | CVE-1999-1342No exploit | ICQ ActiveList Server allows remote attackers to cause a denial of service (crash) via malformed packets to the server's UDP port.icq · activelist server | Medium5.0 | — | 1.3% | Oct 17, 1999 |
18Monitor | CVE-2009-1915Proof of concept | Stack-based buffer overflow in the URL Search Hook (ICQToolBar.dll) in ICQ 6.5 allows remote attackers to cause a denial of service (persisticq · icq · CWE-119 | Medium4.3 | — | 5.0% | Jun 4, 2009 |
18Monitor | CVE-2008-7136Proof of concept | toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a long argument to theicq · icq toolbar · CWE-20 | Medium4.3 | — | 4.2% | Sep 1, 2009 |
18Monitor | CVE-2008-7135Proof of concept | toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a long argument to theicq · icq toolbar · CWE-20 | Medium4.3 | — | 2.2% | Sep 1, 2009 |
- CVE-2008-112038Monitor
Format string vulnerability in the embedded Internet Explorer component for Mirabilis ICQ 6 build 6043 allows remote servers to execute arbi
CriticalCVSS 9.3No exploitEPSS 3%icq · mirabilis icqMar 3, 2008
- CVE-2011-048738Monitor
ICQ 7 does not verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a crafted file tha
CriticalCVSS 9.3No exploitEPSS 3%icq · icqJan 18, 2011
- CVE-2008-192032Monitor
Heap-based buffer overflow in the boxelyRenderer module in the Personal Status Manager feature in ICQ 6.0 build 6043 allows remote attackers
HighCVSS 7.5Proof of conceptEPSS 6%icq · mirabilis icqApr 23, 2008
- CVE-2000-055222Monitor
ICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not delete it, which allows local users to obt
MediumCVSS 5.5Proof of conceptEPSS 1%icq · icqJun 6, 2000
- CVE-1999-134220Monitor
ICQ ActiveList Server allows remote attackers to cause a denial of service (crash) via malformed packets to the server's UDP port.
MediumCVSS 5.0No exploitEPSS 1%icq · activelist serverOct 17, 1999
- CVE-2009-191518Monitor
Stack-based buffer overflow in the URL Search Hook (ICQToolBar.dll) in ICQ 6.5 allows remote attackers to cause a denial of service (persist
MediumCVSS 4.3Proof of conceptEPSS 5%icq · icqJun 4, 2009
- CVE-2008-713618Monitor
toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a long argument to the
MediumCVSS 4.3Proof of conceptEPSS 4%icq · icq toolbarSep 1, 2009
- CVE-2008-713518Monitor
toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a long argument to the
MediumCVSS 4.3Proof of conceptEPSS 2%icq · icq toolbarSep 1, 2009