ICQ is distributed network of Internet chat clients and servers

Risk Level: Low risk vulnerability  Low

Check or Attack Name: ICQClient

Platforms: ICQ
Description:

ICQ is a very popular distributed chat system that offers many features not offered by other chat systems. ICQ has been the source of holes that have allowed an attacker to transfer data (which would otherwise not be available, or was not originally intended to be available) from the ICQ user's machine. ICQ has also been the target of Denial of Service attacks and is vulnerable to message spoofing.

Remedy:

If your site's policy forbids programs like ICQ, you should locate the offending machine and remove the ICQ client software.

References:

ICQ, Inc., ICQ - World's Largest Internet Online Communications Network, http://www.mirabilis.com/

BUGTRAQ Mailing List, Vulnerabilities in ICQ, http://geek-girl.com/bugtraq/1997_4/0470.html

BUGTRAQ Mailing List, Re: Vulnerabilities in ICQ, http://geek-girl.com/bugtraq/1997_4/0475.html

SecuriTeam.com, Another ICQ 98a Bug, http://www.securiteam.com/exploits/Another_ICQ_98a_bug.html


X-Force Logo
Know Your Risks