Vulnerabilities > Skype Technologies

DATE CVE VULNERABILITY TITLE RISK
2005-07-19 CVE-2005-2300 Local Security vulnerability in Skype
Skype 1.1.0.20 and earlier allows local users to overwrite arbitrary files via a symlink attack on the skype_profile.jpg temporary file.
local
low complexity
skype-technologies
2.1
2005-05-03 CVE-2005-1407 Local Security vulnerability in Skype
Skype for Windows 1.2.0.0 to 1.2.0.46 allows local users to bypass the identity check for an authorized application, then call arbitrary Skype API functions by modifying or replacing that application.
local
low complexity
skype-technologies
4.6
2005-01-10 CVE-2004-1114 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Skype Technologies Skype
Buffer overflow in the handling of command line arguments in Skype 1.0.x.94 through 1.0.x.98 allows remote attackers to execute arbitrary code via a callto:// URL with a long non-existent username, a different vulnerability than CVE-2004-1777.
network
skype-technologies CWE-119
critical
9.3
2004-12-31 CVE-2004-1777 Improper Input Validation vulnerability in Skype Technologies Skype 0.98.0.04
A "range check error" in Skype for Windows before 0.98.0.28 allows local and remote attackers to cause a denial of service (application crash) via long command line arguments or a long callto:// URL, a different vulnerability than CVE-2004-1114.
network
low complexity
skype-technologies CWE-20
5.0