Record summary

CVE-2007-3633 has a selected CVSS score of 6.4; EIP currently links 1 catalogued exploit.

Description

Absolute path traversal vulnerability in the Chilkat Software Chilkat Zip ActiveX control in ChilkatZip2.dll 12.4.2.0 allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the (1) SaveLastError method and probably the (2) WriteExe method.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBChilkat Zip ActiveX Component 12.4 - Multiple Insecure MethodsExploitDB exploitby shinnaiNot analyzed1 file
ExploitDB

PoC details

References

9