9.3
CVSSv2

CVE-2008-6563

Published: 31/03/2009 Updated: 11/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the XML parser in Trillian 3.1.9.0, and possibly earlier, allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DTD file.

Vulnerable Product Search on Vulmon Subscribe to Product

ceruleanstudios trillian 3.1.9.0

Exploits

source: wwwsecurityfocuscom/bid/28747/info Trillian is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input To exploit this issue, an attacker must entice an unsuspecting user to load a malicious 'dtd' file Successfully exploiting this issue may allow remote attackers to ...