7.5
CVSSv2

CVE-2000-1093

Published: 09/01/2001 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in AOL Instant Messenger prior to 4.3.2229 allows remote malicious users to execute arbitrary commands via a long "goim" command.

Vulnerable Product Search on Vulmon Subscribe to Product

aol instant messenger 3.5.1808

aol instant messenger 3.5.1856

aol instant messenger 2.0_n

aol instant messenger 2.5.1366

aol instant messenger 2.5.1598

aol instant messenger 4.0

aol instant messenger 4.1.2010

aol instant messenger 3.0.1470

aol instant messenger 3.0_n

aol instant messenger 4.2.1193

aol instant messenger 3.5.1635

aol instant messenger 3.5.1670

Exploits

source: wwwsecurityfocuscom/bid/2118/info AOL Instant Messenger (AIM) is a real time messaging service for users that are on line When AOL Instant Messenger is installed, by default it configures the system so that the aim: URL protocol connects aim:// urls to the AIM client There exists a buffer overflow in parsing aim:// URL parameter ...