Aurigma develops web-based image manipulation and uploading components, with its vulnerability profile centered on the ActiveX control used for client-side image handling. The observed weakness class reflects memory-safety challenges inherent to legacy ActiveX implementations operating on user-supplied image data.
The number and severity of CVEs published that impact products developed by Aurigma over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-0659HIGH Stack-based buffer overflow in Aurigma Image Uploader ActiveX control (ImageUploader4.ocx) 4.5.70 and earlier, as used in MySpace MySpaceUploader.ocx 1.0.0.4, allows remote attacke | Feb 8, 2008 | 10.0 | 66 | NO | YES |
CVE-2008-0660HIGH Multiple stack-based buffer overflows in Aurigma Image Uploader ActiveX control (ImageUploader4.ocx) 4.6.17.0, 4.5.70.0, and 4.5.126.0, and ImageUploader5 5.0.10.0, as used by Face | Feb 8, 2008 | 9.3 | 58 | NO | YES |
CVE-2008-1490HIGH Buffer overflow in a certain Aurigma ActiveX control in ImageUploader4.ocx 4.1.36.0, as used with Piczo (aka Pizco) and possibly other online services, allows remote attackers to e | Mar 25, 2008 | 9.3 | 24 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Aurigma.
Media articles that mention a CVE ID that affects a product developed by Aurigma — matched by CVE ID, not by vendor name.