Quest InTrust ArDoc.dll ActiveX Control Remote File Creation
Severity: CRITICAL
DESCRIPTION
An insecure method in the ARDoc ActiveX Control (ARDoc.dll) can be exploited to overwrite arbitrary files with the contents of exported documents via a call to the "SaveToFile()" method with a specially crafted "bstrFileName" argument.
Successful exploitation of this vulnerability allows execution of arbitrary code.
TREND MICRO PROTECTION INFORMATION
- Apply associated live casino online DPI Rules.
- Update your software to the latest releases. You may do so for this particular software here:
live casino online -?Malaysia (MY)
live casino online Malaysia Sdn Bhd (661143-T)
Suite 24-01, Level 24,
Integra Tower,
No. 348, Jalan Tun Razak,
50400 Kuala Lumpur, Malaysia
Phone: +603-2772 2288
Privacy | Legal | Accessibility | Site map
Copyright ?2024 live casino online. All rights reserved