Unrated severityNVD Advisory· Published Feb 18, 2005· Updated Apr 16, 2026
CVE-2005-0242
CVE-2005-0242
Description
The Audio Setup Wizard (asw.dll) in Yahoo! Messenger 6.0.0.1750, and possibly other versions, allows attackers to arbitrary code by placing a malicious ping.exe program into the Messenger program directory, which is installed with weak default permissions.
Affected products
5cpe:2.3:a:yahoo:messenger:5.5:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:yahoo:messenger:5.5:*:*:*:*:*:*:*
- cpe:2.3:a:yahoo:messenger:5.6:*:*:*:*:*:*:*
- cpe:2.3:a:yahoo:messenger:5.6.0.1351:*:*:*:*:*:*:*
- cpe:2.3:a:yahoo:messenger:6.0:*:*:*:*:*:*:*
- cpe:2.3:a:yahoo:messenger:6.0.0.1750:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- secunia.com/advisories/11815nvdPatch
- secunia.com/secunia_research/2004-6/advisory/nvdExploitPatchVendor Advisory
- messenger.yahoo.com/security/update6.htmlnvd
News mentions
0No linked articles in our index yet.