Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

EDraw Flowchart ActiveX Control Arbitrary File Overwrite Vulnerability

To exploit this issue, an attacker must entice an unsuspecting victim into following a malicious URI.

The following sample exploit code has been provided:

UPDATE (November 29, 2007): The DeepSight Threat Analyst team discovered that this issue is currently being exploited in the wild.







 

Privacy Statement
Copyright 2009, SecurityFocus