PT-2002-2535 · Aol · Aol Instant Messenger

Publicado

2002-12-31

·

Atualizado

2008-09-05

·

CVE-2002-1813

CVSS v2.0

2.6

Baixa

VetorAV:N/AC:H/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions AOL Instant Messenger (AIM) version 4.8.2790
Description The issue allows remote attackers to execute arbitrary programs by specifying the program in the href attribute of a link, which is a directory traversal vulnerability.
Recommendations For AOL Instant Messenger (AIM) version 4.8.2790, consider disabling the execution of programs from links until a patch is available. Restrict access to links with the href attribute to minimize the risk of exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2002-1813

Produtos afetados

Aol Instant Messenger