9.3
CVSSv2

CVE-2007-3832

Published: 17/07/2007 Updated: 29/07/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the AOL Instant Messenger (AIM) protocol handler in AIM.DLL in Cerulean Studios Trillian allows remote malicious users to execute arbitrary code via a malformed aim: URI, as demonstrated by a long URI beginning with the aim:///#1111111/ substring.

Vulnerable Product Search on Vulmon Subscribe to Product

cerulean studios trillian 3.1.6.0

Exploits

source: wwwsecurityfocuscom/bid/24927/info Trillian is prone to remote command- and code-execution vulnerabilities because the application fails to properly handle user-supplied input via a registered URI Successfully exploiting these issues allows attackers to execute arbitrary commands or code in the context of the affected applicatio ...