OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Pizco vulnerable to buffer overflow in activex

david130490hotmail.com
Date: Wed Mar 19 2008 - 20:53:56 CDT


It's possible that users that uses Pizco were vulnerable to the same vulnerability that "Aurigma ImageUploader4.ocx" that found Elazar Broad.

This post is this:
http://www.securityfocus.com/bid/27539

The version of ImageUploader4 is 4.1.36.0

And I say that it's possible because I find a site where I download it, but I don't saw where the Activex control is used.

Web with the vulnerable control:
http://cdnimg.piczo.com/images/uploader/piczo_fast_uploader.cab