PoC Index

CVE-2007-4031

HIGH 7.8EPSS 5.7%

Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to delete arbitrary files via a .. (dot dot) in the argument to the deleteReport method, probably related to the SCANCTRL.ScanCtrlCtrl.1 ActiveX control in scan.dll.

CVSS v2.0
7.8 HIGHAV:N/AC:M/Au:N/C:N/I:P/A:C
EPSS
5.71% chance of exploitation in the next 30 days, 92th percentile
Published
2007-07-27
Updated
2024-08-07

ExploitDB entries (2)

References

Related