Vulnerabilities > Hotfoon Corporation

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-1511 Remote Security vulnerability in Hotfoon
Hotfoon 4.0 does not notify users before opening links in web browsers, which could allow remote attackers to execute arbitrary code via a certain link sent in a chat window.
network
low complexity
hotfoon-corporation
5.0
2002-12-31 CVE-2002-2385 Buffer Errors vulnerability in Hotfoon Corporation Hotfoon 4.0
Buffer overflow in hotfoon4.exe in Hotfoon 4.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a URL containing a long voice phone number.
network
low complexity
hotfoon-corporation CWE-119
7.5
2002-12-31 CVE-2002-2384 Credentials Management vulnerability in Hotfoon Corporation Hotfoon 4.0
hotfoon4.exe in Hotfoon 4.00 stores user names and passwords in cleartext in the hotfoon2 registry key, which allows local users to gain access to user accounts and steal phone service.
local
low complexity
hotfoon-corporation CWE-255
3.6