Computer Security
[EN] securityvulns.ru no-pyccku


AOL instant messenger / ICQ directory traversal
Published:10.04.2007
Source:
SecurityVulns ID:7557
Type:client
Threat Level:
6/10
Description:Directory traversal on file receiption.
Affected:AOL : Instant Messenger 5.9
 AOL : ICQ 5.1
CVE:CVE-2007-1904 (Directory traversal vulnerability in AOL Instant Messenger (AIM) 5.9 and earlier, and ICQ 5.1 and probably earlier, allows user-assisted remote attackers to write files to arbitrary locations via a .. (dot dot) in a filename in a file transfer operation.)
Original documentdocumentIDEFENSE, iDefense Security Advisory 04.09.07: AOL AIM and ICQ File Transfer Path-Traversal Vulnerability (10.04.2007)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod