Description
Buffer overflow in a certain Aurigma ActiveX control in ImageUploader4.ocx 4.1.36.0, as used with Piczo (aka Pizco) and possibly other online services, allows remote attackers to execute arbitrary code via unspecified vectors, possibly involving a long Action property, a different CLSID than CVE-2008-0659.
Affected products
- aurigma / image_uploader_activex_control4.1.36.0 – 4.1.36.0
- piczo / imageuploader44.1.36.0 – 4.1.36.0