6.4
CVSSv2

CVE-2007-3633

Published: 10/07/2007 Updated: 29/09/2017
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

Absolute path traversal vulnerability in the Chilkat Software Chilkat Zip ActiveX control in ChilkatZip2.dll 12.4.2.0 allows remote malicious users to create or overwrite arbitrary files via a full pathname in the argument to the (1) SaveLastError method and probably the (2) WriteExe method.

Vulnerable Product Search on Vulmon Subscribe to Product

chilkat software chilkat zip activex control 12.4.2.0

Exploits

<pre> <code><span style="font: 10pt Courier New;"><span class="general1-symbol">------------------------------------------------------------------------------ <b>Chilkat Software Chilkat Zip ActiveX Component (ChilkatZip2dll v 12420) "SaveLastError()" and "WriteExe()" Insecure Methods</b> url: ww ...