HIGH · 9.3

CVE-2008-2475

eBay Enhanced Picture Uploader ActiveX control (EPUWALcontrol.dll) before 1.0.27 allows remote attackers to execute arbitrary commands via the PictureUrls property.

Vulnerability Description

eBay Enhanced Picture Uploader ActiveX control (EPUWALcontrol.dll) before 1.0.27 allows remote attackers to execute arbitrary commands via the PictureUrls property.

CVSS Score

9.3

HIGH

AV:N/AC:M/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
EbayEnhanced Picture Uploader Activex Control<= 1.0.26

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-2475?

CVE-2008-2475 is a vulnerability with a CVSS score of 9.3 (HIGH). eBay Enhanced Picture Uploader ActiveX control (EPUWALcontrol.dll) before 1.0.27 allows remote attackers to execute arbitrary commands via the PictureUrls property.

How severe is CVE-2008-2475?

CVE-2008-2475 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-2475?

Check the references section above for vendor advisories and patch information. Affected products include: Ebay Enhanced Picture Uploader Activex Control.