Lucene search

K
cveMitreCVE-2008-4749
HistoryOct 27, 2008 - 8:00 p.m.

CVE-2008-4749

2008-10-2720:00:04
mitre
web.nvd.nist.gov
24
vimpx
vimpax
activex control
vulnerability
overwrite
arbitrary files
remote attackers
logfile
clearlogfile
savetofile
nvd

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.1

Confidence

Low

EPSS

0.006

Percentile

79.3%

Multiple insecure method vulnerabilities in the VImpX.VImpAX ActiveX control (VImpX.ocx) 4.8.8.0 in DB Software Laboratory VImp X, possibly 4.7.7, allow remote attackers to overwrite arbitrary files via (1) the LogFile property and ClearLogFile method, and (2) the SaveToFile method.

Affected configurations

Nvd
Node
db_soft_labvimp_xMatch4.8.8.0
VendorProductVersionCPE
db_soft_labvimp_x4.8.8.0cpe:2.3:a:db_soft_lab:vimp_x:4.8.8.0:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.1

Confidence

Low

EPSS

0.006

Percentile

79.3%

Related for CVE-2008-4749