peter bassill · operator
$ cve CVE-2008-4549 JSON

CVE-2008-4549 EXPLOIT

2.6
LOW · CVSS 2.0 · EPSS 6.6% (pctl 94)

Patch early

A public exploit exists.

Description

The ImageShack Toolbar ActiveX control (ImageShackToolbar.dll) in ImageShack Toolbar 4.5.7, possibly including 4.5.7.69, allows remote attackers to force the upload of arbitrary image files to the ImageShack site via a file: URI argument to the BuildSlideShow method.

Scoring

CVSS2.6 (LOW, v2.0)
VectorAV:N/AC:H/Au:N/C:P/I:N/A:N
EPSS6.62% — more likely to be exploited than 94% of all CVEs
WeaknessCWE-20
On CISA KEVno
Public exploityes
Published2008-10-14
Last modified2026-06-16

Affected (1)

VendorProduct
imageshackimageshack toolbar

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD