CVE-2011-5291

EUVD-2011-5190
The SaveData method in the Cygnicon.ViewControl.1 ActiveX control in CyViewer.ocx in Ashampoo 3D CAD Professional 3.x before 3.0.2 allows remote attackers to write to arbitrary files via a pathname in the first argument.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:N/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 64%
Affected Products (NVD)
VendorProductVersion
ashampoo_gmbh_\&_co.ashampoo_3d_cad_professional_3
3.0
ashampoo_gmbh_\&_co.ashampoo_3d_cad_professional_3
3.0.1
𝑥
= Vulnerable software versions
Common Weakness Enumeration