7.5

CVE-2004-2370

Stack-based buffer overflow in Trillian 0.71 through 0.74f and Trillian Pro 1.0 through 2.01 allows remote attackers to execute arbitrary code via a Yahoo Messenger packet with a long key name.

Data is provided by the National Vulnerability Database (NVD)
Cerulean StudiosTrillian Version0.71
Cerulean StudiosTrillian Version0.73
Cerulean StudiosTrillian Version0.74
Cerulean StudiosTrillian Version0.74b
Cerulean StudiosTrillian Version0.74c
Cerulean StudiosTrillian Version0.74d
Cerulean StudiosTrillian Version0.74e
Cerulean StudiosTrillian Version0.74f
Cerulean StudiosTrillian Version0.74g
Cerulean StudiosTrillian Version0.725
Cerulean StudiosTrillian Pro Version2.01
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 5.42% 0.891
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P