Vulnerability Description
Insecure method vulnerability in the Chilkat Socket ActiveX control (ChilkatSocket.ChilkatSocket.1) in ChilkatSocket.dll 2.3.1.1 allows remote attackers to overwrite arbitrary files via the SaveLastError method. NOTE: this might be related to CVE-2008-1647.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Chilkatsoft | Chilkat Socket | All versions |
References
- http://osvdb.org/49902
- http://secunia.com/advisories/32738Vendor Advisory
- http://www.securityfocus.com/bid/32333Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/46657
- https://www.exploit-db.com/exploits/7142
- http://osvdb.org/49902
- http://secunia.com/advisories/32738Vendor Advisory
- http://www.securityfocus.com/bid/32333Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/46657
- https://www.exploit-db.com/exploits/7142
FAQ
What is CVE-2008-6959?
CVE-2008-6959 is a vulnerability with a CVSS score of 9.3 (HIGH). Insecure method vulnerability in the Chilkat Socket ActiveX control (ChilkatSocket.ChilkatSocket.1) in ChilkatSocket.dll 2.3.1.1 allows remote attackers to overwrite arbitrary files via the SaveLastEr...
How severe is CVE-2008-6959?
CVE-2008-6959 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-6959?
Check the references section above for vendor advisories and patch information. Affected products include: Chilkatsoft Chilkat Socket.