Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote attackers to cause a denial of service (NULL dereference and application crash) via a version field containing zero.
Vector
NETWORK
Complexity
LOW
Authentication
NONE
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE
Advisory | Patch | Confirmed | Link |
---|---|---|---|
27677 | |||
20080207 Multiple vulnerabilities in Ipswitch Instant Me... | |||
3697 | |||
http://aluigi.altervista.org/adv/ipsimene-adv.txt |