Directory traversal vulnerability in AOL Instant Messenger (AIM) 5.9 and earlier, and ICQ 5.1 and probably earlier, allows user-assisted remote attackers to write files to arbitrary locations via a .. (dot dot) in a filename in a file transfer operation.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Icq | Aol | * | 5.1 (including) |
Instant_messenger | Aol | * | 5.9.3861 (including) |