CVE-2007-4600

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
18/10/2007
Last modified:
09/04/2025

Description

The "Protect Worksheet" functionality in Mathsoft Mathcad 12 through 13.1, and PTC Mathcad 14, implements file access restrictions via a protection element in a gzipped XML file, which allows attackers to bypass these restrictions by removing this element.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ptc:mathcad:12:*:*:*:*:*:*:*
cpe:2.3:a:ptc:mathcad:13:*:*:*:*:*:*:*
cpe:2.3:a:ptc:mathcad:13.1:*:*:*:*:*:*:*
cpe:2.3:a:ptc:mathcad:14:*:*:*:*:*:*:*