CVE Vulnerabilities

CVE-2003-0235

Published: May 27, 2003 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Format string vulnerability in POP3 client for Mirabilis ICQ Pro 2003a allows remote malicious servers to execute arbitrary code via format strings in the response to a UIDL command.

Affected Software

NameVendorStart VersionEnd Version
IcqMirabilis99a_2.15build1701 (including)99a_2.15build1701 (including)
IcqMirabilis99a_2.21build1800 (including)99a_2.21build1800 (including)
IcqMirabilis2000.0a (including)2000.0a (including)
IcqMirabilis2000.0b_build3278 (including)2000.0b_build3278 (including)
IcqMirabilis2001a (including)2001a (including)
IcqMirabilis2001b_build3636 (including)2001b_build3636 (including)
IcqMirabilis2001b_build3638 (including)2001b_build3638 (including)
IcqMirabilis2001b_build3659 (including)2001b_build3659 (including)
IcqMirabilis2002a_build3722 (including)2002a_build3722 (including)
IcqMirabilis2002a_build3727 (including)2002a_build3727 (including)
IcqMirabilis2003a_build3777 (including)2003a_build3777 (including)
IcqMirabilis2003a_build3799 (including)2003a_build3799 (including)
IcqMirabilis2003a_build3800 (including)2003a_build3800 (including)

References