Vendors · microsoft · zune software
Total
1
Critical
0
High
Medium
CISA KEV
Absolute path traversal vulnerability in a certain ActiveX control in Zune allows user-assisted remote attackers to overwrite arbitrary files via the SaveToFile method. NOTE: the victim must explicitly allow the code to run.