Directory Traversal Vulnerability in Novell ZENworks Configuration Management
CVE-2013-1079
Currently unrated
Key Information:
- Vendor
Novell
- Vendor
- CVE Published:
- 29 March 2013
What is CVE-2013-1079?
A directory traversal vulnerability exists in the ISCreateObject method of an ActiveX control within the InstallShield ISProxy.dll, affecting various versions of Novell ZENworks Configuration Management. This flaw allows remote attackers to exploit crafted web pages to execute arbitrary local DLL files by invoking the Initialize method, potentially compromising system integrity and security.