CVE-2008-4749
Last modified
CVE-2008-4749 is a vulnerability of currently unknown severity. Multiple insecure method vulnerabilities in the VImpX.VImpAX ActiveX control (VImpX.ocx) 4.8.8.0 in DB Software Laboratory VImp X, possibly 4.7.7, allow remote attackers to overwrite arbitrary files via (1) the LogFile property and ClearLogFile method, and (2) the SaveToFile method.. EPSS estimates a 3.03% chance of exploitation in the next 30 days.
Description
Multiple insecure method vulnerabilities in the VImpX.VImpAX ActiveX control (VImpX.ocx) 4.8.8.0 in DB Software Laboratory VImp X, possibly 4.7.7, allow remote attackers to overwrite arbitrary files via (1) the LogFile property and ClearLogFile method, and (2) the SaveToFile method.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Db Soft Lab | Vimp X | 4.8.8.0 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-4749?
How severe is CVE-2008-4749?
How do I fix CVE-2008-4749?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2008
- CVE-2008-4743SQL injection vulnerability in index.php in QuidaScript FAQ …
- CVE-2008-4744SQL injection vulnerability in product_detail.php in DXShopC…
- CVE-2008-4745Cross-site scripting (XSS) vulnerability in emailFriend.asp …
- CVE-2008-4746Multiple SQL injection vulnerabilities in Uniwin eCart Profe…
- CVE-2008-4747Unspecified vulnerability in the search feature in Sun Java …
- CVE-2008-4748Format string vulnerability in the URI handler in KVirc 3.4.…
- CVE-2008-4750Stack-based buffer overflow in the VImpX.VImpAX ActiveX cont…
- CVE-2008-4751Cross-site scripting (XSS) vulnerability in index.php in iPe…
- CVE-2008-4752TlNews 2.2 allows remote attackers to bypass authentication …
- CVE-2008-4753SQL injection vulnerability in EditUrl.php in AJ Square RSS …
- CVE-2008-4754SQL injection vulnerability in forum.php in Scripts for Site…
- CVE-2008-4755SQL injection vulnerability in gotourl.php in PozScripts Cla…
Are you affected by CVE-2008-4749?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
