CVE-2009-0865
8.8
Vector
AV:N/AC:M/Au:N/C:N/I:C/A:C
Exploitability: 8.6 / Impact: 9.2
Source: NVD
Description
Directory traversal vulnerability in the SnapShotToFile method in the GeoVision LiveX (aka LiveX_v8200) ActiveX control 8.1.2 and 8.2.0 in LIVEX_~1.OCX allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the argument, possibly involving the PlayX and SnapShotX methods.
Affected (2)
Products: Geovision: Livex Activex Control
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.1.2.0 |
References (8)
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.