Vulnerability index

Browse CVEs

54 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Instant Messenger MEDIUM 5.0
CVE-2002-2169

Cross-site scripting vulnerability AOL Instant Messenger (AIM) 4.5 and 4.7 for MacOS and Windows allows remote attackers to conduct unauthorized acti…

Patch available
Fix from $1,600 2002-12-31
Instant Messenger MEDIUM 5.0
CVE-2002-0785

AOL Instant Messenger (AIM) allows remote attackers to cause a denial of service (crash) via an "AddBuddy" link with the ScreenName parameter set to …

No fix yet
Fix from $1,600 2002-08-12
Aol Server HIGH 7.5
CVE-2002-0586

Format string vulnerability in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 all…

Patch available
Fix from $1,950 2002-06-18
Aol Server HIGH 7.5
CVE-2002-0587

Buffer overflow in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allows remote a…

Patch available
Fix from $1,950 2002-06-18
Instant Messenger HIGH 7.5
CVE-2002-0592

AOL Instant Messenger (AIM) allows remote attackers to steal files that are being transferred to other clients by connecting to port 4443 (Direct Con…

Patch available
Fix from $1,950 2002-06-18
Instant Messenger MEDIUM 5.0
CVE-2002-0591EPSS 12%

Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8 beta and earlier allows remote attackers to create arbitrary files and execute c…

Patch available
Fix from $1,600 2002-06-18
Instant Messenger HIGH 7.5
CVE-2002-0362

Buffer overflow in AOL Instant Messenger (AIM) 4.2 and later allows remote attackers to execute arbitrary code via a long AddExternalApp request and …

No fix yet
Fix from $1,950 2002-05-29
Instant Messenger HIGH 7.5
CVE-2002-1591

AOL Instant Messenger (AIM) 4.7.2480 adds free.aol.com to the Trusted Sites Zone in Internet Explorer without user approval, which could allow code f…

Mitigation only
Fix from $1,950 2002-04-08
Aol Server HIGH 7.5
CVE-2002-0100

AOL AOLserver 3.4.2 Win32 allows remote attackers to bypass authentication and read password-protected files via a URL that directly references the f…

Mitigation only
Fix from $1,950 2002-03-25
Instant Messenger HIGH 10.0
CVE-2002-0005EPSS 16%

Buffer overflow in AOL Instant Messenger (AIM) 4.7.2480, 4.8.2616, and other versions allows remote attackers to execute arbitrary code via a long ar…

Patch available
Fix from $1,950 2002-01-31
Instant Messenger MEDIUM 5.0
CVE-2001-1417

AOL Instant Messenger (AIM) 4.7 allows remote attackers to cause a denial of service (application hang or crash) via a buddy icon GIF file whose leng…

No fix yet
Fix from $1,600 2001-10-06
Instant Messenger MEDIUM 5.0
CVE-2001-1418

AOL Instant Messenger (AIM) 4.7 allows remote attackers to cause a denial of service (application crash) via a malformed WAV file.

No fix yet
Fix from $1,600 2001-10-06
Instant Messenger MEDIUM 5.0
CVE-2001-1421

AOL Instant Messenger (AIM) 4.7 and earlier allows remote attackers to cause a denial of service (application crash) via a large number of different …

Fix: after 4.7
Fix from $1,600 2001-10-06
Instant Messenger MEDIUM 5.0
CVE-2001-1419

AOL Instant Messenger (AIM) 4.7.2480 and earlier allows remote attackers to cause a denial of service (application crash) via an instant message that…

No fix yet
Fix from $1,600 2001-10-02
Aol Server HIGH 10.0
CVE-2001-1067EPSS 16%

Buffer overflow in AOLserver 3.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via an HTTP request with …

Patch available
Fix from $1,950 2001-08-31
Aol Server HIGH 7.5
CVE-2001-0314

Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute arbitrary…

Mitigation only
Fix from $1,950 2001-06-02
Aol Server MEDIUM 5.0
CVE-2001-0205EPSS 24%

Directory traversal vulnerability in AOLserver 3.2 and earlier allows remote attackers to read arbitrary files by inserting "..." into the requested …

No fix yet
Fix from $1,600 2001-05-03
Instant Messenger MEDIUM 5.1
CVE-2001-1416

Multiple cross-site scripting (XSS) vulnerabilities in the log messages in certain Alpha versions of AOL Instant Messenger (AIM) 4.4 allow remote att…

Mitigation only
Fix from $1,600 2001-01-18
Instant Messenger HIGH 7.5
CVE-2000-1093EPSS 8%

Buffer overflow in AOL Instant Messenger before 4.3.2229 allows remote attackers to execute arbitrary commands via a long "goim" command.

Patch available
Fix from $1,950 2001-01-09
Aim HIGH 7.5
CVE-2000-1094

Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via a "buddyicon" command with a…

Fix: 4.3.2229+
Fix from $1,950 2001-01-09
Instant Messenger MEDIUM 5.0
CVE-2000-1000

Format string vulnerability in AOL Instant Messenger (AIM) 4.1.2010 allows remote attackers to cause a denial of service and possibly execute arbitra…

Mitigation only
Fix from $1,600 2000-12-11
Instant Messenger MEDIUM 5.0
CVE-2000-0383

The file transfer component of AOL Instant Messenger (AIM) reveals the physical path of the transferred file to the remote recipient.

Mitigation only
Fix from $1,600 2000-05-08
Instant Messenger MEDIUM 5.0
CVE-2000-0190

AOL Instant Messenger (AIM) client allows remote attackers to cause a denial of service via a message with a malformed ASCII value.

Fix: after 3.5
Fix from $1,600 2000-03-02
Instant Messenger MEDIUM 5.0
CVE-1999-0486

Denial of service in AOL Instant Messenger when a remote attacker sends a malicious hyperlink to the receiving client, potentially causing a system c…

Mitigation only
Fix from $1,600 1998-02-01