Absolute path traversal vulnerability in the ALMListView.ALMListCtrl ActiveX control in almaxcx.dll in the graphical user interface in Siemens Automation License Manager (ALM) 2.0 through 5.1+SP1+Upd2 allows remote attackers to overwrite arbitrary files via the Save method.
References
Configurations
Information
Published : 2012-01-08 12:55
Updated : 2012-01-08 21:00
NVD link : CVE-2011-4532
Mitre link : CVE-2011-4532
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
siemens
- automation_license_manager