A highly critical vulnerability was discovered in MindManager. The flaw allows attacker to compromise user’s system. It is due to application loading libraries in insecure manner. An attacker may exploit it by enticing user to open crafted file from remote WebDAV or SMB share. A successful attack allows to execute arbitrary code.
The flaw was confirmed in version 2012 10.0.493. Other versions may be vulnerable also.
Source: Secunia
02.02.2012