Security Advisory

CVE-2007-3982

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-07-25 17:00:00
Last updated 2024-08-07 14:37:05
Assigner mitre
State PUBLISHED

Description

Absolute path traversal vulnerability in the Data Dynamics ActiveReport (ActiveReports) ActiveX control in actrpt2.dll 2.5 and earlier allows remote attackers to create or overwrite arbitrary files via a full pathname in the first argument to the SaveLayout method.