Multiple cross-site scripting (XSS) vulnerabilities in the log messages in certain Alpha versions of AOL Instant Messenger (AIM) 4.4 allow remote attackers to execute arbitrary web script or HTML via an image in the (1) DATA, (2) STYLE, or (3) BINARY tags.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/541384 | US Government Resource |
http://www.kb.cert.org/vuls/id/JARL-56TPBQ | US Government Resource |
http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article | |
http://www.kb.cert.org/vuls/id/541384 | US Government Resource |
http://www.kb.cert.org/vuls/id/JARL-56TPBQ | US Government Resource |
http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article |
Configurations
History
20 Nov 2024, 23:37
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.kb.cert.org/vuls/id/541384 - US Government Resource | |
References | () http://www.kb.cert.org/vuls/id/JARL-56TPBQ - US Government Resource | |
References | () http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article - |
Information
Published : 2001-01-18 05:00
Updated : 2024-11-20 23:37
NVD link : CVE-2001-1416
Mitre link : CVE-2001-1416
CVE.ORG link : CVE-2001-1416
JSON object : View
Products Affected
aol
- instant_messenger
CWE