Amsn is a legacy instant-messaging application with a narrowly scoped vulnerability footprint centered on the single Amsn product. The observed disclosures reflect the application's nature as client-side messaging software, with weakness classifications that warrant baseline security review in the context of its deployment. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Amsn over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-0138MEDIUM aMSN (aka Alvaro's Messenger) allows remote attackers to cause a denial of service (client hang and termination of client's instant-messaging session) by repeatedly sending crafted | Jan 9, 2006 | 5.0 | 28 | NO | YES |
CVE-2008-7255MEDIUM login_screen.tcl in aMSN (aka Alvaro's Messenger) before 0.97.1 saves a password after logout, which allows physically proximate attackers to hijack a session by visiting an unatte | Apr 20, 2010 | 4.6 | 18 | NO | NO |
aMSN 0.90 for Microsoft Windows allows local users to obtain sensitive information such as hashed passwords from (1) hotlog.htm and (2) config.xml. | Dec 31, 2004 | 2.1 | 11 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Amsn.
Media articles that mention a CVE ID that affects a product developed by Amsn — matched by CVE ID, not by vendor name.