Kaspersky AntiVirus SysInfo ActiveX Control Arbitrary File Exfiltration Vulnerability

Bugtraq ID: 23325
Class: Design Error
CVE: CVE-2007-1112
CVE-2007-1879
Remote: Yes
Local: No
Published: Apr 05 2007 12:00AM
Updated: Jul 06 2016 02:39PM
Credit: Peter Vreugdenhil discovered this issue.
Vulnerable: Kaspersky Labs Anti-Virus 6.0
Kaspersky Internet Security 6.0
Not Vulnerable: Kaspersky Internet Security 6.0.Maintenance Pack
Kaspersky Anti-Virus 6.0.Maintenance Pack


 

Privacy Statement
Copyright 2010, SecurityFocus