Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2002-0592


AOL Instant Messenger (AIM) allows remote attackers to steal files that are being transferred to other clients by connecting to port 4443 (Direct Connection) or port 5190 (file transfer) before the intended user.


Published

2002-06-18T04:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 7.5 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

6.4

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application aol instant_messenger 2.0.912 Yes
Application aol instant_messenger 2.0.996 Yes
Application aol instant_messenger 2.0_n Yes
Application aol instant_messenger 2.1.1236 Yes
Application aol instant_messenger 2.5.1366 Yes
Application aol instant_messenger 2.5.1598 Yes
Application aol instant_messenger 3.0.1415 Yes
Application aol instant_messenger 3.0.1470 Yes
Application aol instant_messenger 3.0_n Yes
Application aol instant_messenger 3.5.1635 Yes
Application aol instant_messenger 3.5.1670 Yes
Application aol instant_messenger 3.5.1808 Yes
Application aol instant_messenger 3.5.1856 Yes
Application aol instant_messenger 4.0 Yes
Application aol instant_messenger 4.1 Yes
Application aol instant_messenger 4.1.2010 Yes
Application aol instant_messenger 4.2 Yes
Application aol instant_messenger 4.2.1193 Yes
Application aol instant_messenger 4.3 Yes
Application aol instant_messenger 4.3.2229 Yes
Application aol instant_messenger 4.4 Yes
Application aol instant_messenger 4.5 Yes
Application aol instant_messenger 4.6 Yes
Application aol instant_messenger 4.7 Yes
Application aol instant_messenger 4.7.2480 Yes
Application aol instant_messenger 4.8.2616 Yes
Application aol instant_messenger 4.8.2646 Yes

References