LOW · 2.6

CVE-2008-4549

The ImageShack Toolbar ActiveX control (ImageShackToolbar.dll) in ImageShack Toolbar 4.5.7, possibly including 4.5.7.69, allows remote attackers to force the upload of arbitrary image files to the Ima...

Vulnerability Description

The ImageShack Toolbar ActiveX control (ImageShackToolbar.dll) in ImageShack Toolbar 4.5.7, possibly including 4.5.7.69, allows remote attackers to force the upload of arbitrary image files to the ImageShack site via a file: URI argument to the BuildSlideShow method.

CVSS Score

2.6

LOW

AV:N/AC:H/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
ImageshackImageshack Toolbar4.5.7

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-4549?

CVE-2008-4549 is a vulnerability with a CVSS score of 2.6 (LOW). The ImageShack Toolbar ActiveX control (ImageShackToolbar.dll) in ImageShack Toolbar 4.5.7, possibly including 4.5.7.69, allows remote attackers to force the upload of arbitrary image files to the Ima...

How severe is CVE-2008-4549?

CVE-2008-4549 has been rated LOW with a CVSS base score of 2.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-4549?

Check the references section above for vendor advisories and patch information. Affected products include: Imageshack Imageshack Toolbar.