Absolute directory traversal vulnerability in a certain ActiveX control in the VB To VSI Support Library (VBTOVSI.DLL) 1.0.0.0 in Microsoft Visual Studio 6.0 allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the SaveAs method. NOTE: contents can be copied from local files via the Load method.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-09-14T01:00:00
Updated: 2024-08-07T15:08:34.147Z
Reserved: 2007-09-13T00:00:00
Link: CVE-2007-4890
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-09-14T01:17:00.000
Modified: 2024-11-21T00:36:38.953
Link: CVE-2007-4890
Redhat
No data.