CVE-2007-2644 Information

Description

A certain ActiveX control in Morovia Barcode ActiveX Professional 3.3.1304 allows remote attackers to overwrite arbitrary files by calling the Save method with an arbitrary filename.

Reference

http://moaxb.blogspot.com/2007/05/morovia-barcode-activex-professional.html http://osvdb.org/37786 http://www.securityfocus.com/bid/23934 http://www.shinnai.altervista.org/viewtopic.php?id=42&t_id=13 https://exchange.xforce.ibmcloud.com/vulnerabilities/34248 https://www.exploit-db.com/exploits/3899

Share on: