CVE-2011-5293 Information

Description

The cmdSave method in the ThreeDify.ThreeDifyDesigner.1 ActiveX control in ActiveSolid.dll in ThreeDify Designer 5.0.2 allows remote attackers to write to arbitrary files via a pathname in the argument.

Reference

https://www.htbridge.com/advisory/HTB23020

Share on: