Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Microsoft PicturePusher 'PipPPush.dll' ActiveX Control Arbitrary File Download Vulnerability

Microsoft PicturePusher ActiveX control in 'PipPPush.dll' is prone to a vulnerability that lets attackers download arbitrary files.

Attackers may exploit this issue by enticing victims into visiting a maliciously crafted webpage.

Successful exploits will allow remote attackers to download files from arbitrary locations to the affected computer.

The affected ActiveX control may be a component of Microsoft Digital Image 2006 Starter Edition.

'PipPPush.dll' 7.00.0709 is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2008, SecurityFocus