vendor:
Versalsoft HTTP File Uploader
by:
shinnai
7.5
CVSS
HIGH
Buffer Overflow
CWE
Product Name: Versalsoft HTTP File Uploader
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP Professional SP2 with Internet Explorer 7
2007
Versalsoft HTTP File Uploader (UFileUploaderD.dll) ‘AddFile’ method Buffer Overflow
The 'AddFile' method in the Versalsoft HTTP File Uploader (UFileUploaderD.dll) is vulnerable to a buffer overflow. This can be exploited by sending a specially crafted request, causing the application to crash and potentially allowing for code execution.
Mitigation:
Update to a patched version of the Versalsoft HTTP File Uploader that addresses this vulnerability. Avoid using the affected component if possible.