Pegasus.Imaging.ThumbnailXpress.ActiveX.File.Deletion

description-logoDescription

This indicates an attempt to exploit an arbitrary file delete vulnerability in Pegasus Imaging ThumbnailXpress.
Pegasus Imaging ThumbnailXpress ActiveX Control contains an arbitrary file delete vulnerability through the "CacheFile" method. An attacker can exploit this to delete arbitrary files on an affected computer.

affected-products-logoAffected Products

Pegasus Imaging Corporation. ThumbnailXpress 1.0

Impact logoImpact

System Compromise: Arbitrary File Deletion.

recomended-action-logoRecommended Actions

No patch is currently available. Set the kill bit on the vulnerable ActiveX Control.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2021-01-11 16.995