Filtered by vendor Mirabilis Subscriptions
Filtered by product Icq Subscriptions
Total 23 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2006-0766 1 Mirabilis 2 Icq, Icq Lite 2024-08-07 N/A
ICQ Inc. (formerly Mirabilis) ICQ 2003a, 2003b, Lite 4.0, Lite 4.1, and possibly other Windows versions allows user-assisted remote attackers to hide malicious file extensions and bypass Windows security warnings via a filename that ends in an assumed-safe extension such as JPG, and possibly containing other modified properties such as company name, icon, and description, which could trick a user into executing arbitrary programs.
CVE-1999-1289 1 Mirabilis 1 Icq 2024-08-01 N/A
ICQ 98 beta on Windows NT leaks the internal IP address of a client in the TCP data segment of an ICQ packet instead of the public address (e.g. through NAT), which provides remote attackers with potentially sensitive information about the client or the internal network configuration.
CVE-1999-0474 1 Mirabilis 1 Icq 2024-08-01 N/A
The ICQ Webserver allows remote attackers to use .. to access arbitrary files outside of the user's personal directory.