Security Advisory
CVE-2002-0591
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8 beta and earlier allows remote attackers to create arbitrary files and execute commands via a Direct Connection with an IMG tag with a SRC attribute that specifies the target filename.