The ImageShack Toolbar ActiveX control (ImageShackToolbar.dll) in ImageShack Toolbar 4.5.7, possibly including 4.5.7.69, allows remote malicious users to force the upload of arbitrary image files to the ImageShack site via a file: URI argument to the BuildSlideShow method.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
imageshack imageshack toolbar 4.5.7 |
||
imageshack imageshack toolbar 4.5.7.69 |