Multiple cross-site scripting (XSS) vulnerabilities in the log messages in certain Alpha versions of AOL Instant Messenger (AIM) 4.4 allow remote attackers to execute arbitrary web script or HTML via an image in the (1) DATA, (2) STYLE, or (3) BINARY tags.
                
            References
                    | Link | Resource | 
|---|---|
| http://www.kb.cert.org/vuls/id/541384 | US Government Resource | 
| http://www.kb.cert.org/vuls/id/JARL-56TPBQ | US Government Resource | 
| http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article | |
| http://www.kb.cert.org/vuls/id/541384 | US Government Resource | 
| http://www.kb.cert.org/vuls/id/JARL-56TPBQ | US Government Resource | 
| http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article | 
Configurations
                    History
                    20 Nov 2024, 23:37
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://www.kb.cert.org/vuls/id/541384 - US Government Resource | |
| References | () http://www.kb.cert.org/vuls/id/JARL-56TPBQ - US Government Resource | |
| References | () http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article - | 
Information
                Published : 2001-01-18 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2001-1416
Mitre link : CVE-2001-1416
CVE.ORG link : CVE-2001-1416
JSON object : View
Products Affected
                aol
- instant_messenger
CWE
                