>> BFup ActiveX Control "FilePath" Property Buffer Overflow Vulnerability
Title : BFup ActiveX Control "FilePath" Property Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2008-0797 CVE ID : CVE-2008-1282
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-03-07
Technical Description
A vulnerability has been identified in BFup ActiveX Control, which could be exploited by remote attackers to cause a denial of service or take complete control of an affected system. This issue is caused by a buffer overflow error in the "BFup.dll" module when handling an overly long "FilePath" property, which could be exploited by remote attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.