Vulnerabilities (CVE)

Filtered by vendor Ipswitch Subscribe
Filtered by product Imserver
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-3959 1 Ipswitch 2 Imserver, Ipswitch Collaboration Suite 2023-12-10 5.0 MEDIUM N/A
The IM Server (aka IMserve or IMserver) 2.0.5.30 and probably earlier in Ipswitch Instant Messaging before 2.07 in Ipswitch Collaboration Suite (ICS) allows remote attackers to cause a denial of service (daemon crash) via certain data to TCP port 5179 that overwrites a destructor, as reachable by the (1) DoAttachVideoSender, (2) DoAttachVideoReceiver, (3) DoAttachAudioSender, and (4) DoAttachAudioReceiver functions.
CVE-2008-0946 1 Ipswitch 2 Imserver, Instant Messaging 2023-12-10 4.9 MEDIUM N/A
Directory traversal vulnerability in the IM Server (aka IMserve or IMserver) in Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote authenticated users to create arbitrary empty files via a .. (dot dot) in the recipient field.
CVE-2008-0945 1 Ipswitch 2 Imserver, Instant Messaging 2023-12-10 3.5 LOW N/A
Format string vulnerability in the logging function in the IM Server (aka IMserve or IMserver) in Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote authenticated users to cause a denial of service (daemon crash) and possibly have unspecified other impact via format string specifiers in an IP address field.