CVE-2001-1067 – AOLServer 3 - 'Authentication String' Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2001-1067
Buffer overflow in AOLserver 3.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via an HTTP request with a long Authorization header. • https://www.exploit-db.com/exploits/21089 https://www.exploit-db.com/exploits/21088 http://archives.neohapsis.com/archives/bugtraq/2001-08/0325.html http://www.securityfocus.com/archive/1/213041 http://www.securityfocus.com/bid/3230 https://exchange.xforce.ibmcloud.com/vulnerabilities/7030 •
CVE-2001-0314
https://notcve.org/view.php?id=CVE-2001-0314
Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long URL in a link. • http://marc.info/?l=bugtraq&m=98053366805491&w=2 https://exchange.xforce.ibmcloud.com/vulnerabilities/6009 •
CVE-2001-0205 – aolserver 3.2 Win32 - Directory Traversal
https://notcve.org/view.php?id=CVE-2001-0205
Directory traversal vulnerability in AOLserver 3.2 and earlier allows remote attackers to read arbitrary files by inserting "..." into the requested pathname, a modified .. (dot dot) attack. • https://www.exploit-db.com/exploits/20614 http://marc.info/?l=bugtraq&m=98148759123258&w=2 http://marc.info/?l=bugtraq&m=98168216003867&w=2 http://www.securityfocus.com/bid/2343 •
CVE-2001-1416
https://notcve.org/view.php?id=CVE-2001-1416
Multiple cross-site scripting (XSS) vulnerabilities in the log messages in certain Alpha versions of AOL Instant Messenger (AIM) 4.4 allow remote attackers to execute arbitrary web script or HTML via an image in the (1) DATA, (2) STYLE, or (3) BINARY tags. • http://www.kb.cert.org/vuls/id/541384 http://www.kb.cert.org/vuls/id/JARL-56TPBQ http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article •
CVE-2000-1094 – AOL Instant Messenger 4.0/4.1.2010/4.2.1193 - BuddyIcon Buffer Overflow
https://notcve.org/view.php?id=CVE-2000-1094
Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via a "buddyicon" command with a long "src" argument. • https://www.exploit-db.com/exploits/20511 http://marc.info/?l=bugtraq&m=97668265628917&w=2 http://marc.info/?l=bugtraq&m=97683774417132&w=2 http://www.atstake.com/research/advisories/2000/a121200-1.txt http://www.osvdb.org/1692 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •