ICQ is distributed network of Internet chat clients and servers |
---|
Risk Level: | Low | Check or Attack Name: ICQClient |
---|---|---|
Platforms: | ICQ | |
Description: | ICQ is a very popular distributed chat system that offers many features not offered by other chat systems. ICQ has been the source of holes that have allowed an attacker to transfer data (which would otherwise not be available, or was not originally intended to be available) from the ICQ user's machine. ICQ has also been the target of Denial of Service attacks and is vulnerable to message spoofing. |
|
Remedy: | If your site's policy forbids programs like ICQ, you should locate the offending machine and remove the ICQ client software. |
|
References: | ICQ, Inc., ICQ - World's Largest Internet Online Communications Network, http://www.mirabilis.com/ BUGTRAQ Mailing List, Vulnerabilities in ICQ, http://geek-girl.com/bugtraq/1997_4/0470.html BUGTRAQ Mailing List, Re: Vulnerabilities in ICQ, http://geek-girl.com/bugtraq/1997_4/0475.html SecuriTeam.com, Another ICQ 98a Bug, http://www.securiteam.com/exploits/Another_ICQ_98a_bug.html |
Know Your Risks |