9.3

CVE-2007-4067

Exploit
Absolute path traversal vulnerability in the clInetSuiteX6.clWebDav ActiveX control in CLINETSUITEX6.OCX in Clever Internet ActiveX Suite 6.2 allows remote attackers to create or overwrite arbitrary files via a full pathname in the second argument to the GetToFile method.  NOTE: some of these details are obtained from third party information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 6.97% 0.933
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/26213
Vendor Advisory
http://www.attrition.org/pipermail/vim/2007-July/001729.html
Patch
Exploit
http://www.securityfocus.com/bid/25063
Exploit
http://www.vupen.com/english/advisories/2007/2659
https://exchange.xforce.ibmcloud.com/vulnerabilities/35590
https://www.exploit-db.com/exploits/4226