Excerpt:
“A researcher warned this week that a critical flaw in America Online's Instant Messenger likely continues to pose a risk, despite a server-side fix designed to filter out possible attacks…
“The flaw, described in an advisory published on Tuesday by Core Security Technologies, allows attackers to remotely execute code or inject HTML and JavaScript into Internet Explorer.”
Source: Security Focus











