CVE-2008-0660

Aurigma Image Uploader Activex Control - Memory Corruption

Title source: rule

Description

Multiple stack-based buffer overflows in Aurigma Image Uploader ActiveX control (ImageUploader4.ocx) 4.6.17.0, 4.5.70.0, and 4.5.126.0, and ImageUploader5 5.0.10.0, as used by Facebook PhotoUploader 4.5.57.0, allow remote attackers to execute arbitrary code via long (1) ExtractExif and (2) ExtractIptc properties.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Elazar · htmlremotewindows
https://www.exploit-db.com/exploits/5049

Scores

EPSS 0.5439
EPSS Percentile 98.0%

Details

CWE
CWE-119
Status published
Products (6)
aurigma/image_uploader_activex_control 4.5.70.0
aurigma/image_uploader_activex_control 4.5.126.0
aurigma/image_uploader_activex_control 4.6.17.0
aurigma/image_uploader_activex_control 5.0.10.0
facebook/facebook
facebook/photouploader 4.5.57.0
Published Feb 08, 2008
Tracked Since Feb 18, 2026