AOL kayıtları
aol üreticisine ait 60 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 3 · %5
- Pre-auth RCE
- 29
- Düzeltme kaydı olan
- %1,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer6
- CWE-20 Improper Input Validation2
- CWE-191 Integer Underflow (Wrap or Wraparound)1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-310 Cryptographic Issues1
- CWE-404 Improper Resource Shutdown or Release1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
60 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
60Bu hafta | CVE-2004-0636Silahlaştırılmış | Buffer overflow in the goaway function in the aim:goaway URI handler for AOL Instant Messenger (AIM) 5.5, including 5.5.3595, allows remote aol · instant messenger | Kritik10,0 | — | %66,0 | 23 Kas 2004 |
50Planlayın | CVE-2006-5650Silahlaştırılmış | The ICQPhone.SipxPhoneManager ActiveX control in America Online ICQ 5.1 allows remote attackers to download and execute arbitrary code via taol · icq | Yüksek7,5 | — | %67,1 | 7 Kas 2006 |
45Planlayın | CVE-2001-1067Kavram kanıtı | Buffer overflow in AOLserver 3.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via an HTTP requaol · aol server | Kritik10,0 | — | %16,1 | 31 Ağu 2001 |
45Planlayın | CVE-2002-0005Kavram kanıtı | Buffer overflow in AOL Instant Messenger (AIM) 4.7.2480, 4.8.2616, and other versions allows remote attackers to execute arbitrary code via aol · instant messenger | Kritik10,0 | — | %15,5 | 31 Oca 2002 |
44Planlayın | CVE-2007-6250İstismar yok | Stack-based buffer overflow in AOL AOLMediaPlaybackControl (AOLMediaPlaybackControl.exe), as used by AmpX ActiveX control (AmpX.dll), might aol · aolmediaplaybackcontrol · CWE-119 | Kritik9,3 | — | %24,3 | 9 Oca 2008 |
43Planlayın | CVE-2006-0316İstismar yok | Buffer overflow in YGPPicFinder.DLL in AOL You've Got Pictures (YGP) Picture Finder Tool ActiveX Control, as used in AOL 8.0, 8.0 Plus, and aol · aol client software | Kritik10,0 | — | %10,5 | 18 Oca 2006 |
41Planlayın | CVE-2007-5755Silahlaştırılmış | Multiple stack-based buffer overflows in the AOL AmpX ActiveX control in AmpX.dll 2.6.1.11 in AOL Radio allow remote attackers to execute araol · radio · CWE-119 | Kritik9,3 | — | %13,0 | 13 Kas 2007 |
41Planlayın | CVE-2003-1503İstismar yok | Buffer overflow in AOL Instant Messenger (AIM) 5.2.3292 allows remote attackers to execute arbitrary code via an aim:getfile URL with a longaol · instant messenger · CWE-119 | Kritik10,0 | — | %4,6 | 31 Ara 2003 |
40Planlayın | CVE-2006-5820Kavram kanıtı | The LinkSBIcons method in the SuperBuddy ActiveX control (Sb.SuperBuddy.1) in America Online 9.0 Security Edition dereferences an arbitrary aol · aol | Kritik9,3 | — | %8,4 | 2 Nis 2007 |
39İzleyin | CVE-2006-6442İstismar yok | Stack-based buffer overflow in the SetClientInfo function in the CDDBControlAOL.CDDBAOLControl ActiveX control (cddbcontrol.dll), as used inaol · aol client software · CWE-119 | Kritik9,3 | — | %5,5 | 10 Ara 2006 |
38İzleyin | CVE-2009-3658Kavram kanıtı | Use-after-free vulnerability in the Sb.SuperBuddy.1 ActiveX control (sb.dll) in America Online (AOL) 9.5.0.1 allows remote attackers to trigaol · superbuddy activex control · CWE-416 | Yüksek8,8 | — | %8,9 | 9 Eki 2009 |
38İzleyin | CVE-2009-2404İstismar yok | Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunmozilla · network security services · CWE-119 | Kritik9,3 | — | %4,2 | 3 Ağu 2009 |
32İzleyin | CVE-2000-1093Kavram kanıtı | Buffer overflow in AOL Instant Messenger before 4.3.2229 allows remote attackers to execute arbitrary commands via a long "goim" command.aol · instant messenger | Yüksek7,5 | — | %8,1 | 9 Oca 2001 |
32İzleyin | CVE-2006-3888İstismar yok | Buffer overflow in AOL You've Got Pictures (YGP) Pic Downloader YGPPDownload ActiveX control (AOL.PicDownloadCtrl.1, YGPPicDownload.dll), asaol · ygp pic downloader activex control | Yüksek7,5 | — | %6,0 | 10 Eki 2006 |
31İzleyin | CVE-2000-1094Kavram kanıtı | Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via a "buddyicon" commaaol · aim · CWE-120 | Yüksek7,5 | — | %4,7 | 9 Oca 2001 |
31İzleyin | CVE-2006-3887İstismar yok | Buffer overflow in AOL You've Got Pictures (YGP) Screensaver ActiveX control allows remote attackers to execute arbitrary code via unspecifiaol · ygp screensaver activex control | Yüksek7,5 | — | %4,5 | 10 Eki 2006 |
31İzleyin | CVE-2002-0362İstismar yok | Buffer overflow in AOL Instant Messenger (AIM) 4.2 and later allows remote attackers to execute arbitrary code via a long AddExternalApp reqaol · instant messenger | Yüksek7,5 | — | %3,8 | 29 May 2002 |
31İzleyin | CVE-2006-5502İstismar yok | Heap-based buffer overflow in the AOL.PicDownloadCtrl.1 ActiveX control (YGPPicDownload.dll) 9.2.3.0 in America Online (AOL) 9.0 Security Edaol · aol | Yüksek7,5 | — | %3,4 | 25 Eki 2006 |
31İzleyin | CVE-2006-5501İstismar yok | Buffer overflow in the AOL.PicDownloadCtrl.1 ActiveX control (YGPPicDownload.dll) 9.2.3.0 in America Online (AOL) 9.0 Security Edition allowaol · aol | Yüksek7,5 | — | %3,4 | 25 Eki 2006 |
31İzleyin | CVE-2002-0587İstismar yok | Buffer overflow in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allowsaol · aol server | Yüksek7,5 | — | %3,2 | 18 Haz 2002 |
31İzleyin | CVE-2002-0586İstismar yok | Format string vulnerability in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through aol · aol server | Yüksek7,5 | — | %2,9 | 18 Haz 2002 |
31İzleyin | CVE-2004-2373Kavram kanıtı | The Buddy icon file for AOL Instant Messenger (AIM) 4.3 through 5.5 is created in a predictable location, which may allow remote attackers taol · instant messenger | Yüksek7,5 | — | %2,7 | 31 Ara 2004 |
31İzleyin | CVE-2005-1891İstismar yok | The GIF parser in ateimg32.dll in AOL Instant Messenger (AIM) 5.9.3797 and earlier allows remote attackers to cause a denial of service (craaol · aim · CWE-191 | Yüksek7,5 | — | %2,3 | 9 Haz 2005 |
31İzleyin | CVE-2001-0314İstismar yok | Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute aol · aol server | Yüksek7,5 | — | %2,0 | 2 Haz 2001 |
31İzleyin | CVE-2002-1591İstismar yok | AOL Instant Messenger (AIM) 4.7.2480 adds free.aol.com to the Trusted Sites Zone in Internet Explorer without user approval, which could allaol · instant messenger | Yüksek7,5 | — | %1,7 | 8 Nis 2002 |
- CVE-2004-063660Bu hafta
Buffer overflow in the goaway function in the aim:goaway URI handler for AOL Instant Messenger (AIM) 5.5, including 5.5.3595, allows remote
KritikCVSS 10,0SilahlaştırılmışEPSS %66aol · instant messenger23 Kas 2004
- CVE-2006-565050Planlayın
The ICQPhone.SipxPhoneManager ActiveX control in America Online ICQ 5.1 allows remote attackers to download and execute arbitrary code via t
YüksekCVSS 7,5SilahlaştırılmışEPSS %67aol · icq7 Kas 2006
- CVE-2001-106745Planlayın
Buffer overflow in AOLserver 3.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via an HTTP requ
KritikCVSS 10,0Kavram kanıtıEPSS %16aol · aol server31 Ağu 2001
- CVE-2002-000545Planlayın
Buffer overflow in AOL Instant Messenger (AIM) 4.7.2480, 4.8.2616, and other versions allows remote attackers to execute arbitrary code via
KritikCVSS 10,0Kavram kanıtıEPSS %16aol · instant messenger31 Oca 2002
- CVE-2007-625044Planlayın
Stack-based buffer overflow in AOL AOLMediaPlaybackControl (AOLMediaPlaybackControl.exe), as used by AmpX ActiveX control (AmpX.dll), might
KritikCVSS 9,3İstismar yokEPSS %24aol · aolmediaplaybackcontrol9 Oca 2008
- CVE-2006-031643Planlayın
Buffer overflow in YGPPicFinder.DLL in AOL You've Got Pictures (YGP) Picture Finder Tool ActiveX Control, as used in AOL 8.0, 8.0 Plus, and
KritikCVSS 10,0İstismar yokEPSS %10aol · aol client software18 Oca 2006
- CVE-2007-575541Planlayın
Multiple stack-based buffer overflows in the AOL AmpX ActiveX control in AmpX.dll 2.6.1.11 in AOL Radio allow remote attackers to execute ar
KritikCVSS 9,3SilahlaştırılmışEPSS %13aol · radio13 Kas 2007
- CVE-2003-150341Planlayın
Buffer overflow in AOL Instant Messenger (AIM) 5.2.3292 allows remote attackers to execute arbitrary code via an aim:getfile URL with a long
KritikCVSS 10,0İstismar yokEPSS %5aol · instant messenger31 Ara 2003
- CVE-2006-582040Planlayın
The LinkSBIcons method in the SuperBuddy ActiveX control (Sb.SuperBuddy.1) in America Online 9.0 Security Edition dereferences an arbitrary
KritikCVSS 9,3Kavram kanıtıEPSS %8aol · aol2 Nis 2007
- CVE-2006-644239İzleyin
Stack-based buffer overflow in the SetClientInfo function in the CDDBControlAOL.CDDBAOLControl ActiveX control (cddbcontrol.dll), as used in
KritikCVSS 9,3İstismar yokEPSS %5aol · aol client software10 Ara 2006
- CVE-2009-365838İzleyin
Use-after-free vulnerability in the Sb.SuperBuddy.1 ActiveX control (sb.dll) in America Online (AOL) 9.5.0.1 allows remote attackers to trig
YüksekCVSS 8,8Kavram kanıtıEPSS %9aol · superbuddy activex control9 Eki 2009
- CVE-2009-240438İzleyin
Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thun
KritikCVSS 9,3İstismar yokEPSS %4mozilla · network security services3 Ağu 2009
- CVE-2000-109332İzleyin
Buffer overflow in AOL Instant Messenger before 4.3.2229 allows remote attackers to execute arbitrary commands via a long "goim" command.
YüksekCVSS 7,5Kavram kanıtıEPSS %8aol · instant messenger9 Oca 2001
- CVE-2006-388832İzleyin
Buffer overflow in AOL You've Got Pictures (YGP) Pic Downloader YGPPDownload ActiveX control (AOL.PicDownloadCtrl.1, YGPPicDownload.dll), as
YüksekCVSS 7,5İstismar yokEPSS %6aol · ygp pic downloader activex control10 Eki 2006
- CVE-2000-109431İzleyin
Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via a "buddyicon" comma
YüksekCVSS 7,5Kavram kanıtıEPSS %5aol · aim9 Oca 2001
- CVE-2006-388731İzleyin
Buffer overflow in AOL You've Got Pictures (YGP) Screensaver ActiveX control allows remote attackers to execute arbitrary code via unspecifi
YüksekCVSS 7,5İstismar yokEPSS %4aol · ygp screensaver activex control10 Eki 2006
- CVE-2002-036231İzleyin
Buffer overflow in AOL Instant Messenger (AIM) 4.2 and later allows remote attackers to execute arbitrary code via a long AddExternalApp req
YüksekCVSS 7,5İstismar yokEPSS %4aol · instant messenger29 May 2002
- CVE-2006-550231İzleyin
Heap-based buffer overflow in the AOL.PicDownloadCtrl.1 ActiveX control (YGPPicDownload.dll) 9.2.3.0 in America Online (AOL) 9.0 Security Ed
YüksekCVSS 7,5İstismar yokEPSS %3aol · aol25 Eki 2006
- CVE-2006-550131İzleyin
Buffer overflow in the AOL.PicDownloadCtrl.1 ActiveX control (YGPPicDownload.dll) 9.2.3.0 in America Online (AOL) 9.0 Security Edition allow
YüksekCVSS 7,5İstismar yokEPSS %3aol · aol25 Eki 2006
- CVE-2002-058731İzleyin
Buffer overflow in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allows
YüksekCVSS 7,5İstismar yokEPSS %3aol · aol server18 Haz 2002
- CVE-2002-058631İzleyin
Format string vulnerability in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through
YüksekCVSS 7,5İstismar yokEPSS %3aol · aol server18 Haz 2002
- CVE-2004-237331İzleyin
The Buddy icon file for AOL Instant Messenger (AIM) 4.3 through 5.5 is created in a predictable location, which may allow remote attackers t
YüksekCVSS 7,5Kavram kanıtıEPSS %3aol · instant messenger31 Ara 2004
- CVE-2005-189131İzleyin
The GIF parser in ateimg32.dll in AOL Instant Messenger (AIM) 5.9.3797 and earlier allows remote attackers to cause a denial of service (cra
YüksekCVSS 7,5İstismar yokEPSS %2aol · aim9 Haz 2005
- CVE-2001-031431İzleyin
Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute
YüksekCVSS 7,5İstismar yokEPSS %2aol · aol server2 Haz 2001
- CVE-2002-159131İzleyin
AOL Instant Messenger (AIM) 4.7.2480 adds free.aol.com to the Trusted Sites Zone in Internet Explorer without user approval, which could all
YüksekCVSS 7,5İstismar yokEPSS %2aol · instant messenger8 Nis 2002