PT-2007-3963 · Morovia · Morovia Barcode Activex Professional

Shinnai

·

Published

2007-05-13

·

Updated

2017-10-11

·

CVE-2007-2644

CVSS v2.0

9.4

High

VectorAV:N/AC:L/Au:N/C:N/I:C/A:C
Name of the Vulnerable Software and Affected Versions Morovia Barcode ActiveX Professional version 3.3.1304
Description The issue allows remote attackers to overwrite arbitrary files by calling the Save method with an arbitrary filename, potentially leading to unauthorized data modification.
Recommendations For Morovia Barcode ActiveX Professional version 3.3.1304, consider restricting access to the Save method to prevent arbitrary file overwrites until a patch is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-2644

Affected Products

Morovia Barcode Activex Professional