Buffer overflow in the vsflex8l ActiveX control in IBM SPSS SamplePower 3.0.1 before FP1 3.0.1-IM-S3SAMPC-WIN32-FP001-IF02 allows remote attackers to execute arbitrary code via a crafted ComboList property value.
References
Configurations
History
21 Nov 2024, 02:02
Type | Values Removed | Values Added |
---|---|---|
References | () http://www-01.ibm.com/support/docview.wss?uid=swg1PI09800 - | |
References | () http://www-01.ibm.com/support/docview.wss?uid=swg21666790 - Vendor Advisory | |
References | () http://www.solarwinds.com/documentation/orion/docs/releasenotes/releasenotes.htm - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/91314 - |
Information
Published : 2014-03-16 14:06
Updated : 2025-04-12 10:46
NVD link : CVE-2014-0895
Mitre link : CVE-2014-0895
CVE.ORG link : CVE-2014-0895
JSON object : View
Products Affected
ibm
- spss_samplepower
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer