CVE-2005-0243 Information

Description

Yahoo! Messenger 6.0.0.1750 and possibly other versions before 6.0.0.1921 does not properly display long filenames in file dialog boxes which could allow remote attackers to trick users into downloading and executing programs via file names containing a large number of spaces and multiple file extensions.

Reference

http://secunia.com/advisories/13712 http://secunia.com/secunia_research/2005-2/advisory/

Share on: