Ultra Office Control 'Save()' Method Arbitrary File Overwrite Vulnerability

Ultra Office Control is prone to a vulnerability that lets attackers overwrite files with arbitrary, attacker-controlled content. The issue occurs because the control fails to sanitize user-supplied input.

Successful exploits may allow attackers to compromise affected computers.

Ultra Office Control 2.0.2008.501 is vulnerable; other versions may also be affected.


 

Privacy Statement
Copyright 2010, SecurityFocus