05 Feb 2008 07:56 am
MySpace image uploaders vulnerable to attack
Within the last week, researcher Elazar Broad has disclosed two ActiveX vulnerabilities in the tools that MySpace.com and Facebook users use to upload images to their sites. On Sunday, Broad disclosed a buffer overflow vulnerability within the Facebook image upload control. Last week, Broad disclosed a similar buffer overflow flaw within MySpaceAurigma’s ImageUploader ActiveX; the MySpace vulnerability also affects Facebook users.