5
CVSSv2

CVE-2005-1618

Published: 16/05/2005 Updated: 18/10/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The YMSGR URL handler in Yahoo! Messenger 5.x up to and including 6.0 allows remote malicious users to cause a denial of service (disconnect) via a room login or a room join request packet with a third : (colon) and an & (ampersand), which causes Messenger to send a corrupted packet to the server, which triggers a disconnect from the server.

Vulnerable Product Search on Vulmon Subscribe to Product

yahoo messenger 5.6

yahoo messenger 6.0

yahoo messenger 5.5

Exploits

source: wwwsecurityfocuscom/bid/13626/info Yahoo! Messenger is prone to a denial-of-service vulnerability because the application fails to handle exceptional conditions A remote user can cause Yahoo! Messenger to disconnect through malicious emails or web pages This issue is reported to affect Yahoo! Messenger versions 5x to 60 Wind ...