OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Eric Warmenhoven (warmenhovenYAHOO.COM)
Date: Thu Feb 15 2001 - 16:18:49 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    > > I tried with version 1.0.0, it is vulnerable for sure.
    > > Other versions (such as 2.0.0b1) seem to be vulerable as well,
    > > though i did not compile them to try.
    > >
    > one little try shows that licq (http://licq.org) is vulerable too however the
    > complete url will be visible to the user.
    >

    Kaim (http://sourceforge.net/projects/kaim) is also similarly vulnerable;
    though because it's an AIM client the URL has to be crafted as an HTML link.
    Kaim doesn't show you the URL before you click on it, though it does let you
    copy it without going to it.

    Eric