Heap-based buffer overflow in the Facebook PhotoUploader ActiveX control 5.0.14.0 and earlier allows remote attackers to execute arbitrary code via a long FileMask property value.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.557
EPSS Ranking 97.9%