PT-2002-2535 · Aol · Aol Instant Messenger

Published

2002-12-31

·

Updated

2008-09-05

·

CVE-2002-1813

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions AOL Instant Messenger (AIM) version 4.8.2790
Description The issue allows remote attackers to execute arbitrary programs by specifying the program in the href attribute of a link, which is a directory traversal vulnerability.
Recommendations For AOL Instant Messenger (AIM) version 4.8.2790, consider disabling the execution of programs from links until a patch is available. Restrict access to links with the href attribute to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-1813

Affected Products

Aol Instant Messenger