CVE-2002-2169
Cross-site scripting vulnerability AOL Instant Messenger (AIM) 4.5 and 4.7 for MacOS and Windows allows remote attackers to conduct unauthorized activities, such as adding buddies and groups to a user's buddy list, via a URL with a META HTTP-EQUIV="refresh" tag to an aim: URL.
- Affected products
- Aol Instant Messenger
- Aol Instant Messenger
- = 4.5, 4.7, 4.7.2480
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 2.4% (82th percentile)
- NVD status
- Modified
- Published
- 2005-11-16
CVE-2002-2169 at NVD
1 known exploit for CVE-2002-2169
Proof-of-concept code and exploit modules indexed by Sploitus