CVE

Id
4982  
CVE No.
CVE-2002-0591  
Status
Candidate  
Description
Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8 beta and earlier allows remote attackers to create arbitrary files and execute commands via a Direct Connection with an IMG tag with a SRC attribute that specifies the target filename.  
Phase
Proposed (20020611)  
Votes
ACCEPT(1) Frech | NOOP(3) Cole, Cox, Foat | REVIEWING(1) Wall  
Comments