Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2007-4600

Overview

Vulnerability Score 4.6 4.6
CVE Id CVE-2007-4600
Last Modified 15 Nov 2008 01:57:43
Published 18 Oct 2007 04:17:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2007-4600

Summary

The "Protect Worksheet" functionality in Mathsoft Mathcad 12 through 13.1, and PTC Mathcad 14, implements file access restrictions via a protection element in a gzipped XML file, which allows attackers to bypass these restrictions by removing this element.

Vulnerable Systems

Application

  • Ptc Mathcad 12

  • Ptc Mathcad 13

  • Ptc Mathcad 13.1

  • Ptc Mathcad 14


References

BUGTRAQ - 20071016 CVE-2007-4600 - Mathcad Protect Worksheet Vulnerability

OSVDB - 43764

XF - mathcad-xmcdz-security-bypass(37263)

SREASON - 3248


Last Updated: 27 May 2016 10:45:54