First published: Tue Jun 11 2002(Updated: )
Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8 beta and earlier allows remote attackers to create arbitrary files and execute commands via a Direct Connection with an IMG tag with a SRC attribute that specifies the target filename.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
AOL Instant Messenger | =4.2 | |
AOL Instant Messenger | =4.0 | |
AOL Instant Messenger | =4.5 | |
AOL Instant Messenger | =4.3 | |
AOL Instant Messenger | =4.8_beta | |
AOL Instant Messenger | =4.6 | |
AOL Instant Messenger | =4.7 | |
AOL Instant Messenger | =4.4 | |
AOL Instant Messenger | =4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.