PT-2008-2566 · Photostockplus · Photostockplus Uploader Tool

Will Dormann

·

Publicado

2008-05-20

·

Atualizado

2017-08-08

·

CVE-2008-0957

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions PhotoStockPlus Uploader Tool version (affected versions not specified)
Description The issue concerns multiple stack-based buffer overflows in the PhotoStockPlus Uploader Tool ActiveX control. This allows remote attackers to execute arbitrary code via unspecified initialization parameters, such as username or password, in API endpoints like "/api/v1/login" or "/users/{id}". However, specific details about API endpoints, vulnerable parameters, or function names are not provided.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-0957

Produtos afetados

Photostockplus Uploader Tool