Insecure method vulnerability in the ChilkatCrypt2.ChilkatCrypt2.1 ActiveX control (ChilkatCrypt2.dll 4.3.2.1) in Chilkat Crypt ActiveX Component allows remote attackers to create and overwrite arbitrary files via the WriteFile method. NOTE: this could be leveraged for code execution by creating executable files in Startup folders or by accessing files using hcp:// URLs. NOTE: some of these details are obtained from third party information.
References
Configurations
Information
Published : 2008-11-10 06:12
Updated : 2017-09-28 18:32
NVD link : CVE-2008-5002
Mitre link : CVE-2008-5002
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
chilkat_software
- chilkat_crypt_activex_control