Jabberd2

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 6
    Known Exploited: 0
    1
    Critical Level Threats
    2
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2017-18225

    The Gentoo net-im/jabberd2 package through 2.6.1 installs jabberd, jabberd2-c2s, jabberd2-router, jabberd2-s2s, and jabberd2-sm in /usr/bin owned by the jabber account, which might allow local users to gain privileges by leveraging access to this account and then waiting for root to execute one of these programs.

    Last Modified: Nov 21, 2024
    Published: Mar 12, 2018

    CVE-2017-18226

    jabberd: privilege escalation via PID file manipulation

    Last Modified: Nov 21, 2024
    Published: Sep 05, 2017

    CVE-2017-10807

    jabberd: Jabberd before 2.6.1 allows anyone to authenticate using SASLANONYMOUS even when this option is disabled

    Last Modified: Apr 20, 2025
    Published: Jul 04, 2017

    CVE-2015-2058

    jabberd: buffer overflow when normalizing strings

    Last Modified: Apr 12, 2025
    Published: Feb 09, 2015

    CVE-2012-3525

    jabberd: Prone to unsolicited XMPP Dialback attacks

    Last Modified: Apr 11, 2025
    Published: Aug 21, 2012
    Items Per Page