Vulnerabilities > CVE-2007-4067 - Unspecified vulnerability in Clever Components Internet Activex Suite

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
clever-components
critical
exploit available

Summary

Absolute path traversal vulnerability in the clInetSuiteX6.clWebDav ActiveX control in CLINETSUITEX6.OCX in Clever Internet ActiveX Suite 6.2 allows remote attackers to create or overwrite arbitrary files via a full pathname in the second argument to the GetToFile method. NOTE: some of these details are obtained from third party information.

Vulnerable Configurations

Part Description Count
Application
Clever_Components
1

Exploit-Db

descriptionClever Internet ActiveX Suite 6.2 Arbitrary File Download/Overwrite. CVE-2007-4067. Remote exploit for windows platform
fileexploits/windows/remote/4226.html
idEDB-ID:4226
last seen2016-01-31
modified2007-07-25
platformwindows
port
published2007-07-25
reportershinnai
sourcehttps://www.exploit-db.com/download/4226/
titleClever Internet ActiveX Suite 6.2 - Arbitrary File Download/Overwrite
typeremote