5.1
CVSSv2

CVE-2007-3883

Published: 18/07/2007 Updated: 29/09/2017
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 520
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Data Dynamics ActiveBar ActiveX control (actbar3.ocx) 3.2 and previous versions allows remote malicious users to create or overwrite files via a full pathname in (1) the second argument to the Save method, or the first argument to the (2) SaveLayoutChanges or (3) SaveMenuUsageData method.

Vulnerable Product Search on Vulmon Subscribe to Product

datadynamics activebar

Exploits

<pre> <code><span style="font: 10pt Courier New;"><span class="general1-symbol"><body bgcolor="#E0E0E0">------------------------------------------------------------------------------------ <b>Data Dynamics ActiveBar ActiveX Control (Actbar3ocx 32) Multiple Inscure Methods</b> url: wwwdatadynamic ...
<pre> <code><span style="font: 10pt Courier New;"><span class="general1-symbol">--------------------------------------------------------------------------------------- <b>Data Dynamics ActiveBar ActiveX Control (actbar3ocx <= 31) Multiple Inscure Methods</b> url: wwwdatadynamicscom/defaultaspx ...