Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8.2790 allows remote attackers to execute arbitrary programs by specifying the program in the href attribute of a link.
| Software | From | Fixed in |
|---|---|---|
| aol / instant_messenger | 5.0.2938 | 5.0.2938.x |
| aol / instant_messenger | 4.8.2646 | 4.8.2646.x |
| aol / instant_messenger | 4.8.2616 | 4.8.2616.x |
| aol / instant_messenger | 4.7.2480 | 4.7.2480.x |