Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-5608
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-5608

Description:
The DownloadFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to force a download of an arbitrary file onto a client machine via a URL in the first argument and a destination filename in the second argument, a different vulnerability than CVE-2008-0952 and CVE-2008-0953.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/42850

ST
  1020165

SAID
  Secunia Advisory: SA30516

MISC
  http://www.csis.dk/dk/forside/CSIS-RI-0003.pdf

HP
  http://www12.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c01422264

CERT-VN
  949587

BID
  29526
  29530


Return to the previous page.