CyberRota
Live Feed
Return to register
Case File

CVE-2012-5897

HIGH · CVSS 9.3 EPSS 3.83% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-11-17 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

Exhibit — Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

External Security References

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2012-5897
Severity
HIGH
CVSS
9.3
EPSS
3.83%

Original Filing — NVD Description

The (1) SimpleTree and (2) ReportTree classes in the ARDoc ActiveX control (ARDoc.dll) in Quest InTrust 10.4.0.853 and earlier do not properly implement the SaveToFile method, which allows remote attackers to write or overwrite arbitrary files via the bstrFileName argument.