CVE-2008-0659

Stack-based buffer overflow in Aurigma Image Uploader ActiveX control (ImageUploader4.ocx) 4.5.70 and earlier, as used in MySpace MySpaceUploader.ocx 1.0.0.4, allows remote attackers to execute arbitrary code via a long Action property.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:aurigma:image_uploader_activex_control:*:*:*:*:*:*:*:*
cpe:2.3:a:myspace:myspaceuploader:1.0.0.4:*:*:*:*:*:*:*

History

21 Nov 2024, 00:42

Type Values Removed Values Added
References () http://blogs.aurigma.com/post/2008/01/Another-security-problem---oh%2c-not-again.aspx - () http://blogs.aurigma.com/post/2008/01/Another-security-problem---oh%2c-not-again.aspx -
References () http://seclists.org/fulldisclosure/2008/Jan/0593.html - () http://seclists.org/fulldisclosure/2008/Jan/0593.html -
References () http://secunia.com/advisories/28715 - () http://secunia.com/advisories/28715 -
References () http://secunia.com/advisories/28733 - () http://secunia.com/advisories/28733 -
References () http://www.computerworld.com/action/article.do?command=viewArticleBasic&articleId=9060483 - () http://www.computerworld.com/action/article.do?command=viewArticleBasic&articleId=9060483 -
References () http://www.kb.cert.org/vuls/id/776931 - US Government Resource () http://www.kb.cert.org/vuls/id/776931 - US Government Resource
References () http://www.securityfocus.com/bid/27533 - Exploit () http://www.securityfocus.com/bid/27533 - Exploit
References () http://www.vupen.com/english/advisories/2008/0344/references - () http://www.vupen.com/english/advisories/2008/0344/references -
References () http://www.vupen.com/english/advisories/2008/0345/references - () http://www.vupen.com/english/advisories/2008/0345/references -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/40118 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/40118 -
References () https://www.exploit-db.com/exploits/5025 - () https://www.exploit-db.com/exploits/5025 -

Information

Published : 2008-02-08 02:00

Updated : 2024-11-21 00:42


NVD link : CVE-2008-0659

Mitre link : CVE-2008-0659

CVE.ORG link : CVE-2008-0659


JSON object : View

Products Affected

myspace

  • myspaceuploader

aurigma

  • image_uploader_activex_control
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer