Return to CVE list

CVE-2007-4902

6.4
Medium

CVE-2007-4902

cve@mitre.org
Modified

Description

Absolute path traversal vulnerability in a certain ActiveX control in CryptoX.dll 2.0 and earlier in the Ultra Crypto Component allows remote attackers to write to arbitrary files via a full pathname in the argument to the SaveToFile method.