📦

messenger

Vendor: yahoo

Actively Exploited 0 CISA KEV List
PoC / Exploits 14 Code Available
Total RCEs 0 Remote Access
Total CVEs 71 Total Indexed
Avg. EPSS 4.80% Exploit Prob.
Latest CVE CVE-2023-30097 May 04

Security Vulnerability Index

Page 5 / 8
5.0 CVSS

Yahoo! Messenger 5.0 allows remote attackers to spoof other users by modifying the username and using the spoofed username for social engineering or denial of service (flooding) attacks.

EPSS: 3.28%
7.5 CVSS

Yahoo! Messenger 4.0 sends user passwords in cleartext, which could allow remote attackers to gain privileges of other users via sniffing.

EPSS: 1.57%
7.5 CVSS

Buffer overflow in Yahoo! Messenger 5.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long (1) message or (2) IMvironment field.

EPSS: 6.96%