Absolute path traversal vulnerability in a certain ActiveX control in CkString.dll 1.1 and earlier in CHILKAT ASP String allows remote attackers to create or overwrite arbitrary files via a full pathname in the first argument to the SaveToFile method, a different vulnerability than CVE-2007-3633.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Asp_string | Chilkat_software | 1.1 (including) | 1.1 (including) |