Security Advisory
CVE-2007-4902
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Absolute path traversal vulnerability in a certain ActiveX control in CryptoX.dll 2.0 and earlier in the Ultra Crypto Component allows remote attackers to write to arbitrary files via a full pathname in the argument to the SaveToFile method.