S-139: Persits Software XUpload 'AddFile()' Method ActiveX Control Vulnerability


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) S-139: Persits Software XUpload 'AddFile()' Method ActiveX Control Vulnerability
# 1  
Old 01-30-2008
S-139: Persits Software XUpload 'AddFile()' Method ActiveX Control Vulnerability

XUpload is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input. The risk is MEDIUM. An attacker may exploit this issue to execute arbitrary code in the context of an application using the ActiveX control (typically Internet Explorer). Failed attacks will likely cause denial-of-service conditions.


More...
Login or Register to Ask a Question

Previous Thread | Next Thread
Login or Register to Ask a Question
Class::MOP::Method::Constructor(3pm)			User Contributed Perl Documentation		      Class::MOP::Method::Constructor(3pm)

NAME
Class::MOP::Method::Constructor - Method Meta Object for constructors VERSION
version 2.0603 SYNOPSIS
use Class::MOP::Method::Constructor; my $constructor = Class::MOP::Method::Constructor->new( metaclass => $metaclass, options => { debug => 1, # this is all for now }, ); # calling the constructor ... $constructor->body->execute($metaclass->name, %params); DESCRIPTION
This is a subclass of "Class::MOP::Method" which generates constructor methods. METHODS
Class::MOP::Method::Constructor->new(%options) This creates a new constructor object. It accepts a hash reference of options. o metaclass This should be a Class::MOP::Class object. It is required. o name The method name (without a package name). This is required. o package_name The package name for the method. This is required. o is_inline This indicates whether or not the constructor should be inlined. This defaults to false. $metamethod->is_inline Returns a boolean indicating whether or not the constructor is inlined. $metamethod->associated_metaclass This returns the Class::MOP::Class object for the method. AUTHOR
Moose is maintained by the Moose Cabal, along with the help of many contributors. See "CABAL" in Moose and "CONTRIBUTORS" in Moose for details. COPYRIGHT AND LICENSE
This software is copyright (c) 2012 by Infinity Interactive, Inc.. This is free software; you can redistribute it and/or modify it under the same terms as the Perl 5 programming language system itself. perl v5.14.2 2012-06-28 Class::MOP::Method::Constructor(3pm)