6.4
CVSSv2

CVE-2007-3459

Published: 27/06/2007 Updated: 16/10/2018
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

A certain ActiveX control in Avaxswf.dll 1.0.0.1 in Civitech Avax Vector 1.3 allows remote malicious users to create or overwrite arbitrary files via a full pathname in the argument to the WriteMovie method.

Vulnerable Product Search on Vulmon Subscribe to Product

civiltech avax vector activex 1.3

Exploits

: GOODFELLAS Security Research TEAM : : goodfellasshellcodecomar : Avaxswfdll v1001 from Avax Vector software ActiveX Arbitrary Data Write ============================================================================ Internal ID: VULWAR200706264 Introduction ------------ Avaxswfdll is a library included in the Avax Vector Ac ...