Heap-based buffer overflow in the XML parser in the AIM plugin in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a malformed XML tag.
Conclusion & alert: CVE-2008-5403 is rated High Risk (68.7/100): CVSS Critical severity, with high exploitation likelihood (EPSS 20.86%, 95th percentile). Core evidence: EPSS ranks this CVE among the most likely to be exploited in the near term. Mandatory action: High exploitation likelihood—assess exposure and prioritize remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-01-29 | 25.56% | 20.86% | -4.70% |
| 2 | 2025-03-30 | 17.55% | 25.56% | +8.01% |
| 3 | 2025-03-29 | — | 17.55% | — |
Full EPSS history (10 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 10.0 | 2.0 | HIGH |
|
10.0 | 10.0 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| cerulean_studios | trillian | 0.50 | cpe:2.3:a:cerulean_studios:trillian:0.50:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.52 | cpe:2.3:a:cerulean_studios:trillian:0.52:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.60 | cpe:2.3:a:cerulean_studios:trillian:0.60:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.61 | cpe:2.3:a:cerulean_studios:trillian:0.61:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.62 | cpe:2.3:a:cerulean_studios:trillian:0.62:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.63 | cpe:2.3:a:cerulean_studios:trillian:0.63:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.70 | cpe:2.3:a:cerulean_studios:trillian:0.70:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.71 | cpe:2.3:a:cerulean_studios:trillian:0.71:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.72 | cpe:2.3:a:cerulean_studios:trillian:0.72:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.73 | cpe:2.3:a:cerulean_studios:trillian:0.73:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.74 | cpe:2.3:a:cerulean_studios:trillian:0.74:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.74c | cpe:2.3:a:cerulean_studios:trillian:0.74c:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.74d | cpe:2.3:a:cerulean_studios:trillian:0.74d:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.74e | cpe:2.3:a:cerulean_studios:trillian:0.74e:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.74f | cpe:2.3:a:cerulean_studios:trillian:0.74f:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.74g | cpe:2.3:a:cerulean_studios:trillian:0.74g:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.74i | cpe:2.3:a:cerulean_studios:trillian:0.74i:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.635 | cpe:2.3:a:cerulean_studios:trillian:0.635:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.725 | cpe:2.3:a:cerulean_studios:trillian:0.725:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 0.6351 | cpe:2.3:a:cerulean_studios:trillian:0.6351:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 1.0 | cpe:2.3:a:cerulean_studios:trillian:1.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 1.0 | cpe:2.3:a:cerulean_studios:trillian:1.0:*:pro:*:*:*:*:* |
| cerulean_studios | trillian | 2.0 | cpe:2.3:a:cerulean_studios:trillian:2.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 2.0 | cpe:2.3:a:cerulean_studios:trillian:2.0:*:pro:*:*:*:*:* |
| cerulean_studios | trillian | 2.1 | cpe:2.3:a:cerulean_studios:trillian:2.1:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.0 | cpe:2.3:a:cerulean_studios:trillian:3.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.0 | cpe:2.3:a:cerulean_studios:trillian:3.0:*:basic:*:*:*:*:* |
| cerulean_studios | trillian | 3.0 | cpe:2.3:a:cerulean_studios:trillian:3.0:*:pro:*:*:*:*:* |
| cerulean_studios | trillian | 3.1 | cpe:2.3:a:cerulean_studios:trillian:3.1:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.1 | cpe:2.3:a:cerulean_studios:trillian:3.1:*:basic:*:*:*:*:* |
| cerulean_studios | trillian | 3.1 | cpe:2.3:a:cerulean_studios:trillian:3.1:*:pro:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.0.120 | cpe:2.3:a:cerulean_studios:trillian:3.1.0.120:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.0.121 | cpe:2.3:a:cerulean_studios:trillian:3.1.0.121:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.5.0 | cpe:2.3:a:cerulean_studios:trillian:3.1.5.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.5.1 | cpe:2.3:a:cerulean_studios:trillian:3.1.5.1:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.6.0 | cpe:2.3:a:cerulean_studios:trillian:3.1.6.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.7.0 | cpe:2.3:a:cerulean_studios:trillian:3.1.7.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.8.0 | cpe:2.3:a:cerulean_studios:trillian:3.1.8.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.9.0 | cpe:2.3:a:cerulean_studios:trillian:3.1.9.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.9.0 | cpe:2.3:a:cerulean_studios:trillian:3.1.9.0:*:basic:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.9.0 | cpe:2.3:a:cerulean_studios:trillian:3.1.9.0:*:pro:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.10.0 | cpe:2.3:a:cerulean_studios:trillian:3.1.10.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian | 3.1.11.0 | cpe:2.3:a:cerulean_studios:trillian:3.1.11.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian_pro | — | cpe:2.3:a:cerulean_studios:trillian_pro:*:*:*:*:*:*:*:* |
| cerulean_studios | trillian_pro | 1.0 | cpe:2.3:a:cerulean_studios:trillian_pro:1.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian_pro | 2.0 | cpe:2.3:a:cerulean_studios:trillian_pro:2.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian_pro | 2.01 | cpe:2.3:a:cerulean_studios:trillian_pro:2.01:*:*:*:*:*:*:* |
| cerulean_studios | trillian_pro | 3.0 | cpe:2.3:a:cerulean_studios:trillian_pro:3.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian_pro | 3.1.5.0 | cpe:2.3:a:cerulean_studios:trillian_pro:3.1.5.0:*:*:*:*:*:*:* |
| cerulean_studios | trillian_pro | 3.1_build_121 | cpe:2.3:a:cerulean_studios:trillian_pro:3.1_build_121:*:*:*:*:*:*:* |
| ceruleanstudios | trillian | — | cpe:2.3:a:ceruleanstudios:trillian:*:*:*:*:*:*:*:* |
| ceruleanstudios | trillian | 3.1.0.9 | cpe:2.3:a:ceruleanstudios:trillian:3.1.0.9:*:*:*:*:*:*:* |
| ceruleanstudios | trillian | 3.1.9.0 | cpe:2.3:a:ceruleanstudios:trillian:3.1.9.0:*:*:*:*:*:*:* |
| ceruleanstudios | trillian_pro | — | cpe:2.3:a:ceruleanstudios:trillian_pro:*:*:*:*:*:*:*:* |
| ceruleanstudios | trillian_pro | 3.1.9.0 | cpe:2.3:a:ceruleanstudios:trillian_pro:3.1.9.0:*:*:*:*:*:*:* |