Absolute path traversal vulnerability in the Chilkat Software Chilkat Zip ActiveX control in ChilkatZip2.dll 12.4.2.0 allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the (1) SaveLastError method and probably the (2) WriteExe method.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Chilkat_zip_activex_control | Chilkat_software | 12.4.2.0 (including) | 12.4.2.0 (including) |