CVE-2007-3649

HP Photo Digital Imaging Activex Control - Path Traversal

Title source: rule

Description

Absolute path traversal vulnerability in a certain ActiveX control in hpqvwocx.dll 2.1.0.556 in Hewlett-Packard (HP) Digital Imaging allows remote attackers to create or overwrite arbitrary files via the second argument to the SaveToFile method.

Exploits (1)

exploitdb WORKING POC VERIFIED
by shinnai · htmlremotewindows
https://www.exploit-db.com/exploits/4155

Scores

EPSS 0.0791
EPSS Percentile 92.1%

Details

Status published
Products (1)
hp/photo_digital_imaging_activex_control 2.1.0.556
Published Jul 10, 2007
Tracked Since Feb 18, 2026