Multiple cross-site scripting (XSS) vulnerabilities in the log messages in certain Alpha versions of AOL Instant Messenger (AIM) 4.4 allow remote attackers to execute arbitrary web script or HTML via an image in the (1) DATA, (2) STYLE, or (3) BINARY tags.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/541384 | US Government Resource |
http://www.kb.cert.org/vuls/id/JARL-56TPBQ | US Government Resource |
http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article |
Configurations
History
No history.
Information
Published : 2001-01-18 05:00
Updated : 2024-02-04 16:31
NVD link : CVE-2001-1416
Mitre link : CVE-2001-1416
CVE.ORG link : CVE-2001-1416
JSON object : View
Products Affected
aol
- instant_messenger
CWE