Page 11 of 60 results (0.004 seconds)

CVSS: 10.0EPSS: 2%CPEs: 2EXPL: 4

Buffer overflow in AOLserver 3.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via an HTTP request with a long Authorization header. • https://www.exploit-db.com/exploits/21089 https://www.exploit-db.com/exploits/21088 http://archives.neohapsis.com/archives/bugtraq/2001-08/0325.html http://www.securityfocus.com/archive/1/213041 http://www.securityfocus.com/bid/3230 https://exchange.xforce.ibmcloud.com/vulnerabilities/7030 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long URL in a link. • http://marc.info/?l=bugtraq&m=98053366805491&w=2 https://exchange.xforce.ibmcloud.com/vulnerabilities/6009 •

CVSS: 5.0EPSS: 68%CPEs: 1EXPL: 2

Directory traversal vulnerability in AOLserver 3.2 and earlier allows remote attackers to read arbitrary files by inserting "..." into the requested pathname, a modified .. (dot dot) attack. • https://www.exploit-db.com/exploits/20614 http://marc.info/?l=bugtraq&m=98148759123258&w=2 http://marc.info/?l=bugtraq&m=98168216003867&w=2 http://www.securityfocus.com/bid/2343 •

CVSS: 5.1EPSS: 0%CPEs: 1EXPL: 0

Multiple cross-site scripting (XSS) vulnerabilities in the log messages in certain Alpha versions of AOL Instant Messenger (AIM) 4.4 allow remote attackers to execute arbitrary web script or HTML via an image in the (1) DATA, (2) STYLE, or (3) BINARY tags. • http://www.kb.cert.org/vuls/id/541384 http://www.kb.cert.org/vuls/id/JARL-56TPBQ http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 2

Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via a "buddyicon" command with a long "src" argument. • https://www.exploit-db.com/exploits/20511 http://marc.info/?l=bugtraq&m=97668265628917&w=2 http://marc.info/?l=bugtraq&m=97683774417132&w=2 http://www.atstake.com/research/advisories/2000/a121200-1.txt http://www.osvdb.org/1692 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •