Absolute path traversal vulnerability in the ALMListView.ALMListCtrl ActiveX control in almaxcx.dll in the graphical user interface in Siemens Automation License Manager (ALM) 2.0 through 5.1+SP1+Upd2 allows remote attackers to overwrite arbitrary files via the Save method.
References
Configurations
History
No history.
Information
Published : 2012-01-08 20:55
Updated : 2012-01-09 05:00
NVD link : CVE-2011-4532
Mitre link : CVE-2011-4532
CVE.ORG link : CVE-2011-4532
JSON object : View
Products Affected
siemens
- automation_license_manager
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')