Vulnerability Description
Buffer overflow in the Sony AxRUploadServer.AxRUploadControl.1 ActiveX control in AxRUploadServer.dll 1.0.0.38 in SonyISUpload.cab 1.0.0.38 for Sony ImageStation allows remote attackers to execute arbitrary code via a long argument to the SetLogging method. NOTE: some of these details are obtained from third party information.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sony | Axruploadserver Activex Control | 1.0.0.38 |
| Sony | Imagestation | All versions |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/28854Vendor Advisory
- http://securityreason.com/securityalert/3648
- http://www.securityfocus.com/archive/1/487802/100/0/threaded
- http://www.securityfocus.com/archive/1/487805/100/0/threaded
- http://www.securityfocus.com/bid/27715Exploit
- http://www.vupen.com/english/advisories/2008/0483
- https://www.exploit-db.com/exploits/5086
- https://www.exploit-db.com/exploits/5100
- http://secunia.com/advisories/28854Vendor Advisory
- http://securityreason.com/securityalert/3648
- http://www.securityfocus.com/archive/1/487802/100/0/threaded
- http://www.securityfocus.com/archive/1/487805/100/0/threaded
- http://www.securityfocus.com/bid/27715Exploit
- http://www.vupen.com/english/advisories/2008/0483
- https://www.exploit-db.com/exploits/5086
FAQ
What is CVE-2008-0748?
CVE-2008-0748 is a vulnerability with a CVSS score of 10.0 (HIGH). Buffer overflow in the Sony AxRUploadServer.AxRUploadControl.1 ActiveX control in AxRUploadServer.dll 1.0.0.38 in SonyISUpload.cab 1.0.0.38 for Sony ImageStation allows remote attackers to execute arb...
How severe is CVE-2008-0748?
CVE-2008-0748 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-0748?
Check the references section above for vendor advisories and patch information. Affected products include: Sony Axruploadserver Activex Control, Sony Imagestation.