CVE-1999-1440
medium
📛 Threat Title
CVE-1999-1440
Description
Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allow attackers to send an executable file with a long name that contains so many spaces that the .exe extension is not displayed, which could make the user believe that the file is safe to open from the client.
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (3)
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
-
NVD detail: CVE-1999-1440
NVD Recent CVEs
Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allow attackers to send an executable file with a long name that contains so many spaces that the .exe extension is not displayed, which could make the user believe that the file is safe to open from the client.
Remediations (10)
-
web:csrc.nist.rip
Patch and vulnerability metrics fall into three categories: susceptibility to attack, mitigation response time, and cost, which includes a metric for the business impact of program failures.
-
web:msrc.microsoft.com
The Microsoft Security Response Center (MSRC) investigates all reports of security vulnerabilities affecting Microsoft products and services, and provides the information here as part of the ongoing effort to help you manage security risks and help keep your systems protected.
-
web:nvd.nist.gov
Vulnerabilities All vulnerabilities in the NVD have been assigned a CVE identifier and thus, abide by the definition below. CVE defines a vulnerability as: "A weakness in the computational logic (e.g., code) found in software and hardware components that, when exploited, results in a negative impact to confidentiality, integrity, or availability. Mitigation of the vulnerabilities in this ...
-
web:support.servicenow.com
Overview The advisories below document publicly disclosed Common Vulnerabilities and Exposures ( CVEs ) in the Now Platform by ServiceNow. Because ServiceNow uses various methods to communicate vulnerability information, patches, and other fixes, customers should review family, security patch , and hotfix release notes, which are available at https://docs.servicenow.com, for a complete list of ...
-
web:translate.google.com
Google's service, offered free of charge, instantly translates words, phrases, and web pages between English and over 100 other languages.
-
web:www.cisa.gov
If vulnerabilities cannot be remediated within the recommended timeframes, develop a remediation plan for action and coordination across the organization. The remediation plan should include: Vulnerability remediation constraints Interim mitigation actions to overcome constraints Final actions required to remediate vulnerability
-
web:www.cve.org
At cve .org, we provide the authoritative reference method for publicly known information-security vulnerabilities and exposures
-
web:www.ibm.com
IBM MQ provides periodic maintenance releases ( Fix Packs), and Cumulative Security Updates, for Version 9.4.0 Long Term Support (LTS). The following is a complete listing of available fixes grouped by maintenance delivery.
-
web:www.nap.usace.army.mil
A: The proposed standards encourage the expansion of mitigation banking because it is a reliable and verifiable method of wetland replacement. Mitigation banks are a "performance-based" form of wetland replacement because, unlike traditional forms of wetland replacement, the tradable wetland restoration credits generated by banks are tied to demonstrated achievement of project goals. In ...
-
web:www.nexusmods.com
This mod aims to fix ( or drastically minimize) vertex explosions on shadps4 by removing certain files related to face customization that the emulator is not currently handling correctly
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.