CVE-2012-0907 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in the web player in NeoAxis NeoAxis web player 1.4 and earlier allows user-assisted remote attackers to write arbitrary files via a .. (dot dot) in a filename in the neoaxis_web_application_win32.zip ZIP archive.
Reference
http://aluigi.altervista.org/adv/neoaxis_1-adv.txt http://osvdb.org/78311 https://exchange.xforce.ibmcloud.com/vulnerabilities/72427
Share on: