CVE-2002-2169 Information

Description

Cross-site scripting vulnerability AOL Instant Messenger (AIM) 4.5 and 4.7 for MacOS and Windows allows remote attackers to conduct unauthorized activities such as adding buddies and groups to a user’s buddy list via a URL with a META HTTP-EQUIV=\refresh\ tag to an aim: URL.

Reference

http://online.securityfocus.com/archive/1/282443 http://www.iss.net/security_center/static/9616.php http://www.mindflip.org/aim.html http://www.securityfocus.com/bid/5246

Share on: