Vulnerabilities > Ipswitch > Imserver

DATE CVE VULNERABILITY TITLE RISK
2008-02-25 CVE-2008-0946 Path Traversal vulnerability in Ipswitch Imserver and Instant Messaging
Directory traversal vulnerability in the IM Server (aka IMserve or IMserver) in Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote authenticated users to create arbitrary empty files via a ..
network
ipswitch CWE-22
4.9
2008-02-25 CVE-2008-0945 USE of Externally-Controlled Format String vulnerability in Ipswitch Imserver and Instant Messaging
Format string vulnerability in the logging function in the IM Server (aka IMserve or IMserver) in Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote authenticated users to cause a denial of service (daemon crash) and possibly have unspecified other impact via format string specifiers in an IP address field.
network
ipswitch CWE-134
3.5
2007-07-24 CVE-2007-3959 Remote Denial of Service vulnerability in Ipswitch Imserver and Ipswitch Collaboration Suite
The IM Server (aka IMserve or IMserver) 2.0.5.30 and probably earlier in Ipswitch Instant Messaging before 2.07 in Ipswitch Collaboration Suite (ICS) allows remote attackers to cause a denial of service (daemon crash) via certain data to TCP port 5179 that overwrites a destructor, as reachable by the (1) DoAttachVideoSender, (2) DoAttachVideoReceiver, (3) DoAttachAudioSender, and (4) DoAttachAudioReceiver functions.
network
low complexity
ipswitch
5.0