CVE-2007-4252

Absolute path traversal vulnerability in a certain ActiveX control in CkString.dll 1.1 and earlier in CHILKAT ASP String allows remote attackers to create or overwrite arbitrary files via a full pathname in the first argument to the SaveToFile method, a different vulnerability than CVE-2007-3633.
Configurations

Configuration 1 (hide)

cpe:2.3:a:chilkat_software:asp_string:1.1:*:*:*:*:*:*:*

History

21 Nov 2024, 00:35

Type Values Removed Values Added
References () http://osvdb.org/40110 - () http://osvdb.org/40110 -
References () http://www.securityfocus.com/bid/25205 - () http://www.securityfocus.com/bid/25205 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/35812 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/35812 -
References () https://www.exploit-db.com/exploits/4255 - () https://www.exploit-db.com/exploits/4255 -

Information

Published : 2007-08-08 23:17

Updated : 2024-11-21 00:35


NVD link : CVE-2007-4252

Mitre link : CVE-2007-4252

CVE.ORG link : CVE-2007-4252


JSON object : View

Products Affected

chilkat_software

  • asp_string