vendor:
AOL Desktop
by:
sickness
7.5
CVSS
HIGH
Buffer Overflow
CWE
Product Name: AOL Desktop
Affected Version From: AOL Desktop 9.6
Affected Version To: AOL Desktop 9.6
Patch Exists: NO
Related CWE:
CPE: cpe:aol:aol_desktop:9.6
Platforms Tested: Windows XP Professional SP3
2011
AOL Desktop 9.6 Exploit
This exploit targets a buffer overflow vulnerability in AOL Desktop 9.6. By sending a specially crafted HTTP request, an attacker can overwrite the EIP register and execute arbitrary code. The exploit has been tested on Windows XP Professional SP3.
Mitigation:
Apply the latest updates for AOL Desktop 9.6 and ensure that the application is running in a secure environment.