The ImageShack Toolbar ActiveX control (ImageShackToolbar.dll) in ImageShack Toolbar 4.5.7, possibly including 4.5.7.69, allows remote attackers to force the upload of arbitrary image files to the ImageShack site via a file: URI argument to the BuildSlideShow method.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2008-10-14 18:12
Updated : 2024-02-04 17:33
NVD link : CVE-2008-4549
Mitre link : CVE-2008-4549
CVE.ORG link : CVE-2008-4549
JSON object : View
Products Affected
imageshack
- imageshack_toolbar
CWE
CWE-20
Improper Input Validation