Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-1212. PoCs published by DSecRG.
AI-analyzed exploit summary This exploit leverages the PrecisionID activeX control (DMATRIXLib.Datamatrix) to overwrite arbitrary files on the target system via the SaveBarCode() or SaveEnhWMF() methods. The provided HTML/JS PoC demonstrates file overwriting by calling SaveBarCode with a user-specified path.
Description
Multiple insecure method vulnerabilities in PRECIS~2.DLL in the PrecisionID Datamatrix ActiveX control (DMATRIXLib.Datamatrix) allow remote attackers to overwrite arbitrary files via the (1) SaveBarCode and (2) SaveEnhWMF methods.
Exploits (1)
This exploit leverages the PrecisionID activeX control (DMATRIXLib.Datamatrix) to overwrite arbitrary files on the target system via the SaveBarCode() or SaveEnhWMF() methods. The provided HTML/JS PoC demonstrates file overwriting by calling SaveBarCode with a user-specified path.