Vulnerabilities > CVE-2007-2755 - Unspecified vulnerability in Precisionid Barcode Precisionid Barcode 1.9

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
precisionid-barcode
critical
exploit available

Summary

The PrecisionID Barcode 1.9 ActiveX control in PrecisionID_Barcode.dll, when Internet Explorer 6 is used, allows remote attackers to overwrite arbitrary files via a full pathname to the SaveToFile function, a different vulnerability than CVE-2007-2744.

Vulnerable Configurations

Part Description Count
Application
Precisionid_Barcode
1

Exploit-Db

descriptionPrecisionID Barcode ActiveX 1.9 Remote Arbitrary File Overwrite Exploit. CVE-2007-2755. Remote exploit for windows platform
fileexploits/windows/remote/3938.html
idEDB-ID:3938
last seen2016-01-31
modified2007-05-16
platformwindows
port
published2007-05-16
reportershinnai
sourcehttps://www.exploit-db.com/download/3938/
titlePrecisionID Barcode ActiveX 1.9 - Remote Arbitrary File Overwrite Exploit
typeremote