Vulnerabilities (CVE)

Filtered by vendor Ipswitch Subscribe
Filtered by product Instant Messaging
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-0944 1 Ipswitch 1 Instant Messaging 2023-12-10 5.0 MEDIUM N/A
Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote attackers to cause a denial of service (NULL dereference and application crash) via a version field containing zero.
CVE-2008-0946 1 Ipswitch 2 Imserver, Instant Messaging 2023-12-10 4.9 MEDIUM N/A
Directory traversal vulnerability in the IM Server (aka IMserve or IMserver) in Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote authenticated users to create arbitrary empty files via a .. (dot dot) in the recipient field.
CVE-2008-0945 1 Ipswitch 2 Imserver, Instant Messaging 2023-12-10 3.5 LOW N/A
Format string vulnerability in the logging function in the IM Server (aka IMserve or IMserver) in Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote authenticated users to cause a denial of service (daemon crash) and possibly have unspecified other impact via format string specifiers in an IP address field.