Aol

Aol

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.12%
  • Veröffentlicht 21.08.2025 20:15:30
  • Zuletzt bearbeitet 22.08.2025 18:08:51

AOL versions up to and including 9.5 includes an ActiveX control (Phobos.dll) that exposes a method called Import() via the Phobos.Playlist COM object. This method is vulnerable to a stack-based buffer overflow when provided with an excessively long ...

  • EPSS 34.55%
  • Veröffentlicht 02.04.2007 22:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The LinkSBIcons method in the SuperBuddy ActiveX control (Sb.SuperBuddy.1) in America Online 9.0 Security Edition dereferences an arbitrary function pointer, which allows remote attackers to execute arbitrary code via a modified pointer value.

  • EPSS 5.42%
  • Veröffentlicht 25.10.2006 22:07:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Buffer overflow in the AOL.PicDownloadCtrl.1 ActiveX control (YGPPicDownload.dll) 9.2.3.0 in America Online (AOL) 9.0 Security Edition allows remote attackers to execute arbitrary code via the downloadFileDirectory property, a different vulnerability...

  • EPSS 5.42%
  • Veröffentlicht 25.10.2006 22:07:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Heap-based buffer overflow in the AOL.PicDownloadCtrl.1 ActiveX control (YGPPicDownload.dll) 9.2.3.0 in America Online (AOL) 9.0 Security Edition allows remote attackers to execute arbitrary code via the AddPictureNoAlbum method, a different vulnerab...

  • EPSS 0.03%
  • Veröffentlicht 21.08.2006 18:04:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

AOL 9.0 Security Edition revision 4184.2340, and probably other versions, uses insecure permissions (Everyone/Full Control) for the "America Online 9.0" directory, which allows local users to gain privileges by replacing critical files.