CVE-2007-4902

Publication date

2007-09-17 16:00:00

Family

mitre

State

PUBLISHED

Description

Absolute path traversal vulnerability in a certain ActiveX control in CryptoX.dll 2.0 and earlier in the Ultra Crypto Component allows remote attackers to write to arbitrary files via a full pathname in the argument to the SaveToFile method.