VulnerabilityModified
CVE-2012-1065
Insecure method vulnerability in TuxScripting.dll in the TuxSystem ActiveX control in 2X ApplicationServer 10.1 Build 1224 allows remote attackers to create or overwrite arbitrary files via the ExportSettings method.
MEDIUM 4.3EPSS 3.98%
Does this matter?
Lower severity and a low EPSS score (3.98%). Track it; it rarely justifies an emergency change on its own.
Description
Insecure method vulnerability in TuxScripting.dll in the TuxSystem ActiveX control in 2X ApplicationServer 10.1 Build 1224 allows remote attackers to create or overwrite arbitrary files via the ExportSettings method.
- CVSS 2.0
- 4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
- EPSS
- 3.98% probability · 90th percentile
- CISA KEV
- Not listed
- Affected
- 2x/applicationserver
- Source
- cve@mitre.org
References
- http://osvdb.org/78831
- http://secunia.com/advisories/47657Vendor Advisory
- http://www.securityfocus.com/bid/51856
- https://exchange.xforce.ibmcloud.com/vulnerabilities/72947
- http://osvdb.org/78831
- http://secunia.com/advisories/47657Vendor Advisory
- http://www.securityfocus.com/bid/51856
- https://exchange.xforce.ibmcloud.com/vulnerabilities/72947
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.