CVE-2002-1487 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 13.6% (pctl 96)
Patch early
A public exploit exists.
Description
The IRC component of Trillian 0.73 and 0.74 allows remote malicious IRC servers to cause a denial of service (crash) by sending the raw messages (1) 206, (2) 211, (3) 213, (4) 214, (5) 215, (6) 217, (7) 218, (8) 243, (9) 302, (10) 317, (11) 324, (12) 332, (13) 333, (14) 352, and (15) 367.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
| EPSS | 13.64% — more likely to be exploited than 96% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2003-04-02 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| cerulean studios | trillian |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Trillian 0.74 - Remote Denial of Service | 2003-08-01 |
| exploit-db | Trillian 0.74 - IRC Raw Messages Denial of Service | 2002-09-22 |
References
- http://archives.neohapsis.com/archives/bugtraq/2002-09/0268.html
- http://www.iss.net/security_center/static/10161.php
- http://www.securityfocus.com/bid/5775
- http://archives.neohapsis.com/archives/bugtraq/2002-09/0268.html
- http://www.iss.net/security_center/static/10161.php
- http://www.securityfocus.com/bid/5775
→ the Explorer · watch your stack · NVD