5.1
CVE-1999-1440
- EPSS 0.94%
- Veröffentlicht 01.01.1999 05:00:00
- Zuletzt bearbeitet 16.06.2026 21:50:26
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allow attackers to send an executable file with a long name that contains so many spaces that the .exe extension is not displayed, which could make the user believe that the file is safe to open from the client.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.94% | 0.561 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.1 | 4.9 | 6.4 |
AV:N/AC:H/Au:N/C:P/I:P/A:P
|
http://marc.info/?l=bugtraq&m=91522424302962&w=2
http://www.securityfocus.com/bid/132