Vulnerability Details CVE-2008-1725
The IBizEBank.FIProfile.1 ActiveX control in fiprofile20.ocx in IBiz E-Banking Integrator (formerly IBiz OFX Integrator) 2.0.2932 exposes the unsafe WriteOFXDataFile method, which allows remote attackers to overwrite arbitrary files via a full pathname in the argument. NOTE: some of these details are obtained from third party information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.058
EPSS Ranking 90.2%
CVSS Severity
CVSS v2 Score 9.0
Products affected by CVE-2008-1725
-
cpe:2.3:a:nsoftware:ibiz_e-banking_integrator:2.0.2932