Cerulean Studios

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 34
    Known Exploited: 0
    10
    Critical Level Threats
    8
    High Level Threats
    15
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2012-5824

    Trillian 5.1.0.19 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, a different vulnerability than CVE-2009-4831.

    Last Modified: Apr 11, 2025
    Published: Nov 04, 2012

    CVE-2009-4831

    Cerulean Studios Trillian 3.1 Basic does not check SSL certificates during MSN authentication, which allows remote attackers to obtain MSN credentials via a man-in-the-middle attack with a spoofed SSL certificate.

    Last Modified: Apr 11, 2025
    Published: Apr 29, 2010

    CVE-2008-5402

    Double free vulnerability in the XML parser in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a crafted XML expression, related to the "IMG SRC ID."

    Last Modified: Apr 23, 2026
    Published: Dec 09, 2008

    CVE-2008-5403

    Heap-based buffer overflow in the XML parser in the AIM plugin in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a malformed XML tag.

    Last Modified: Apr 23, 2026
    Published: Dec 09, 2008

    CVE-2008-5401

    Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a long image filename, related to "AIM IMG Tag Parsing."

    Last Modified: Apr 23, 2026
    Published: Dec 09, 2008
    Items Per Page
    Cerulean_Studios Vulnerabilities & Security CVEs | CVE-DB