Lucene search

K

Teamspeak Security Vulnerabilities

cve
cve

CVE-2007-3956

TeamSpeak WebServer 2.0 for Windows does not validate parameter value lengths and does not expire TCP sessions, which allows remote attackers to cause a denial of service (CPU and memory consumption) via long username and password parameters in a request to login.tscmd on TCP port 14534.

6.9AI Score

0.072EPSS

2007-07-24 06:30 PM
32
cve
cve

CVE-2007-4529

The WebAdmin interface in TeamSpeak Server 2.0.20.1 allows remote authenticated users with the ServerAdmin flag to assign Registered users certain privileges, resulting in a privilege set that extends beyond that ServerAdmin's own servers, as demonstrated by the (1) AdminAddServer, (2) AdminDeleteS...

6.5AI Score

0.01EPSS

2007-08-25 12:17 AM
27
cve
cve

CVE-2007-4530

Multiple cross-site scripting (XSS) vulnerabilities in TeamSpeak Server 2.0.20.1 allow remote attackers to inject arbitrary web script or HTML via (1) the error_text parameter to error_box.html or (2) the ok_title parameter to ok_box.html.

5.8AI Score

0.008EPSS

2007-08-25 12:17 AM
29
cve
cve

CVE-2010-3383

The (1) teamspeak and (2) teamspeak-server scripts in TeamSpeak 2.0.32 place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

6.7AI Score

0.0004EPSS

2010-10-20 06:00 PM
31
cve
cve

CVE-2014-7221

TeamSpeak Client 3.0.14 and earlier allows remote authenticated users to cause a denial of service (buffer overflow and application crash) by connecting to a channel with a different client instance, and placing crafted data in the Chat/Server tab containing [img]//http:// substrings.

6.5CVSS

6.2AI Score

0.006EPSS

2018-01-08 07:29 PM
26
cve
cve

CVE-2014-7222

Buffer overflow in TeamSpeak Client 3.0.14 and earlier allows remote authenticated users to cause a denial of service (application crash) by connecting to a channel with a different client instance, and placing crafted data in the Chat/Server tab with two \ (backslash) characters, a digit, a \ (bac...

6.5CVSS

6.2AI Score

0.004EPSS

2018-01-08 07:29 PM
30
cve
cve

CVE-2017-8290

A potential Buffer Overflow Vulnerability (from a BB Code handling issue) has been identified in TeamSpeak Server version 3.0.13.6 (08/11/2016 09:48:33), it enables the users to Crash any WINDOWS Client that clicked into a Vulnerable Channel of a TeamSpeak Server.

7.5CVSS

7.5AI Score

0.002EPSS

2017-07-06 04:29 PM
23
cve
cve

CVE-2017-9982

TeamSpeak Client 3.0.19 allows remote attackers to cause a denial of service (application crash) via the ᗪ Unicode character followed by the ༿ Unicode character.

7.5CVSS

7.4AI Score

0.004EPSS

2017-06-27 04:29 PM
25
cve
cve

CVE-2019-11351

TeamSpeak 3 Client before 3.2.5 allows remote code execution in the Qt framework.

8.8CVSS

8.9AI Score

0.019EPSS

2019-04-19 09:29 PM
30
cve
cve

CVE-2019-15502

The TeamSpeak client before 3.3.2 allows remote servers to trigger a crash via the 0xe2 0x81 0xa8 0xe2 0x81 0xa7 byte sequence, aka Unicode characters U+2068 (FIRST STRONG ISOLATE) and U+2067 (RIGHT-TO-LEFT ISOLATE).

7.5CVSS

7.5AI Score

0.003EPSS

2019-08-29 04:15 PM
25