Skip to content
Noroxi

AOL records

60 published records for vendor aol.

All records

60 records
  • CVE-2004-0636
    60This week

    Buffer overflow in the goaway function in the aim:goaway URI handler for AOL Instant Messenger (AIM) 5.5, including 5.5.3595, allows remote

    CriticalCVSS 10.0WeaponizedEPSS 66%

    aol · instant messengerNov 23, 2004

  • The ICQPhone.SipxPhoneManager ActiveX control in America Online ICQ 5.1 allows remote attackers to download and execute arbitrary code via t

    HighCVSS 7.5WeaponizedEPSS 67%

    aol · icqNov 7, 2006

  • Buffer overflow in AOLserver 3.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via an HTTP requ

    CriticalCVSS 10.0Proof of conceptEPSS 16%

    aol · aol serverAug 31, 2001

  • Buffer overflow in AOL Instant Messenger (AIM) 4.7.2480, 4.8.2616, and other versions allows remote attackers to execute arbitrary code via

    CriticalCVSS 10.0Proof of conceptEPSS 16%

    aol · instant messengerJan 31, 2002

  • Stack-based buffer overflow in AOL AOLMediaPlaybackControl (AOLMediaPlaybackControl.exe), as used by AmpX ActiveX control (AmpX.dll), might

    CriticalCVSS 9.3No exploitEPSS 24%

    aol · aolmediaplaybackcontrolJan 9, 2008

  • Buffer overflow in YGPPicFinder.DLL in AOL You've Got Pictures (YGP) Picture Finder Tool ActiveX Control, as used in AOL 8.0, 8.0 Plus, and

    CriticalCVSS 10.0No exploitEPSS 10%

    aol · aol client softwareJan 18, 2006

  • Multiple stack-based buffer overflows in the AOL AmpX ActiveX control in AmpX.dll 2.6.1.11 in AOL Radio allow remote attackers to execute ar

    CriticalCVSS 9.3WeaponizedEPSS 13%

    aol · radioNov 13, 2007

  • Buffer overflow in AOL Instant Messenger (AIM) 5.2.3292 allows remote attackers to execute arbitrary code via an aim:getfile URL with a long

    CriticalCVSS 10.0No exploitEPSS 5%

    aol · instant messengerDec 31, 2003

  • The LinkSBIcons method in the SuperBuddy ActiveX control (Sb.SuperBuddy.1) in America Online 9.0 Security Edition dereferences an arbitrary

    CriticalCVSS 9.3Proof of conceptEPSS 8%

    aol · aolApr 2, 2007

  • CVE-2006-6442
    39Monitor

    Stack-based buffer overflow in the SetClientInfo function in the CDDBControlAOL.CDDBAOLControl ActiveX control (cddbcontrol.dll), as used in

    CriticalCVSS 9.3No exploitEPSS 5%

    aol · aol client softwareDec 10, 2006

  • CVE-2009-3658
    38Monitor

    Use-after-free vulnerability in the Sb.SuperBuddy.1 ActiveX control (sb.dll) in America Online (AOL) 9.5.0.1 allows remote attackers to trig

    HighCVSS 8.8Proof of conceptEPSS 9%

    aol · superbuddy activex controlOct 9, 2009

  • CVE-2009-2404
    38Monitor

    Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thun

    CriticalCVSS 9.3No exploitEPSS 4%

    mozilla · network security servicesAug 3, 2009

  • CVE-2000-1093
    32Monitor

    Buffer overflow in AOL Instant Messenger before 4.3.2229 allows remote attackers to execute arbitrary commands via a long "goim" command.

    HighCVSS 7.5Proof of conceptEPSS 8%

    aol · instant messengerJan 9, 2001

  • CVE-2006-3888
    32Monitor

    Buffer overflow in AOL You've Got Pictures (YGP) Pic Downloader YGPPDownload ActiveX control (AOL.PicDownloadCtrl.1, YGPPicDownload.dll), as

    HighCVSS 7.5No exploitEPSS 6%

    aol · ygp pic downloader activex controlOct 10, 2006

  • CVE-2000-1094
    31Monitor

    Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via a "buddyicon" comma

    HighCVSS 7.5Proof of conceptEPSS 5%

    aol · aimJan 9, 2001

  • CVE-2006-3887
    31Monitor

    Buffer overflow in AOL You've Got Pictures (YGP) Screensaver ActiveX control allows remote attackers to execute arbitrary code via unspecifi

    HighCVSS 7.5No exploitEPSS 4%

    aol · ygp screensaver activex controlOct 10, 2006

  • CVE-2002-0362
    31Monitor

    Buffer overflow in AOL Instant Messenger (AIM) 4.2 and later allows remote attackers to execute arbitrary code via a long AddExternalApp req

    HighCVSS 7.5No exploitEPSS 4%

    aol · instant messengerMay 29, 2002

  • CVE-2006-5502
    31Monitor

    Heap-based buffer overflow in the AOL.PicDownloadCtrl.1 ActiveX control (YGPPicDownload.dll) 9.2.3.0 in America Online (AOL) 9.0 Security Ed

    HighCVSS 7.5No exploitEPSS 3%

    aol · aolOct 25, 2006

  • CVE-2006-5501
    31Monitor

    Buffer overflow in the AOL.PicDownloadCtrl.1 ActiveX control (YGPPicDownload.dll) 9.2.3.0 in America Online (AOL) 9.0 Security Edition allow

    HighCVSS 7.5No exploitEPSS 3%

    aol · aolOct 25, 2006

  • CVE-2002-0587
    31Monitor

    Buffer overflow in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allows

    HighCVSS 7.5No exploitEPSS 3%

    aol · aol serverJun 18, 2002

  • CVE-2002-0586
    31Monitor

    Format string vulnerability in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through

    HighCVSS 7.5No exploitEPSS 3%

    aol · aol serverJun 18, 2002

  • CVE-2004-2373
    31Monitor

    The Buddy icon file for AOL Instant Messenger (AIM) 4.3 through 5.5 is created in a predictable location, which may allow remote attackers t

    HighCVSS 7.5Proof of conceptEPSS 3%

    aol · instant messengerDec 31, 2004

  • CVE-2005-1891
    31Monitor

    The GIF parser in ateimg32.dll in AOL Instant Messenger (AIM) 5.9.3797 and earlier allows remote attackers to cause a denial of service (cra

    HighCVSS 7.5No exploitEPSS 2%

    aol · aimJun 9, 2005

  • CVE-2001-0314
    31Monitor

    Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute

    HighCVSS 7.5No exploitEPSS 2%

    aol · aol serverJun 2, 2001

  • CVE-2002-1591
    31Monitor

    AOL Instant Messenger (AIM) 4.7.2480 adds free.aol.com to the Trusted Sites Zone in Internet Explorer without user approval, which could all

    HighCVSS 7.5No exploitEPSS 2%

    aol · instant messengerApr 8, 2002