Security Advisory

CVE-2007-5320

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-10-09 22:00:00
Last updated 2024-08-07 15:24:42
Assigner mitre
State PUBLISHED

Description

Multiple absolute path traversal vulnerabilities in Pegasus Imaging ImagXpress 8.0 allow remote attackers to (1) delete arbitrary files via the CacheFile attribute in the ThumbnailXpres.1 ActiveX control (PegasusImaging.ActiveX.ThumnailXpress1.dll) or (2) overwrite arbitrary files via the CompactFile function in the ImagXpress.8 ActiveX control (PegasusImaging.ActiveX.ImagXpress8.dll).