5
CVSSv2

CVE-2011-4532

Published: 08/01/2012 Updated: 09/01/2012
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Absolute path traversal vulnerability in the ALMListView.ALMListCtrl ActiveX control in almaxcx.dll in the graphical user interface in Siemens Automation License Manager (ALM) 2.0 up to and including 5.1+SP1+Upd2 allows remote malicious users to overwrite arbitrary files via the Save method.

Vulnerable Product Search on Vulmon Subscribe to Product

siemens automation license manager

Exploits

####################################################################### Luigi Auriemma Application: Siemens Automation License Manager supportautomationsiemenscom/WW/llisapidll?func=cslibcsinfo&lang=en&siteid=cseus&aktprim=0&extranet=standard&viewreg=WW&objid=10805384 ...