CVE-2011-5288: Threedify Designer

High severity, CVSS 9.3. EPSS: 3.8% chance of exploitation in the next 30 days.

Multiple buffer overflows in the ThreeDify.ThreeDifyDesigner.1 ActiveX control in ActiveSolid.dll in ThreeDify Designer 5.0.2 allow remote attackers to execute arbitrary code via a long argument to the (1) cmdExport, (2) cmdImport, (3) cmdOpen, or (4) cmdSave method.

Affected products

  • Threedify Threedify Designer: version 5.0.2 only

Published 2015-01-01. Last modified 2026-06-16.