Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in AOL Instant Messenger (AIM) 5.2.3292 allows remote attackers to execute arbitrary code via an aim:getfile URL with a long screen name.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AOL Instant Messenger Getfile屏幕名远程缓冲区溢出漏洞
Vulnerability Description
AOL Instant Messenger是一款实时聊天程序。 AIM在处理"aim"协议执行"getfile"操作时缺少正确的边界缓冲区检查,远程攻击者可以利用这个漏洞构建恶意URI,诱使AIM用户访问,可触发缓冲区溢出。 当AIM安装后,会安装"aim"协议处理器,这个协议允许通过包含"aim:operation?parameter"参数的任意WEB页来装载AIM。其中之一的操作称为"getfile",这个操作接收"screenname"参数,"getfile"操作用于从另一用户获得文件。当操作被调用
CVSS Information
N/A
Vulnerability Type
N/A