Oracle AutoVue version 20.0.1 suffers from an AutoVueX Active-X Control SaveViewStateToFile remote file creation / overwrite vulnerability. Proof of concept code included.
aeb1dfdd12a44a730bcec5864f95e60c365b938d372f776b6178f5919b0b4cf8
© 2024 Packet Storm. All rights reserved.