PT-2012-2388 · Ibm · Exporthtml.Dll+3
Publicado
2012-01-18
·
Atualizado
2017-08-29
·
CVE-2012-0190
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IBM SPSS Dimensions version 5.5
SPSS Data Collection versions 5.6 through 6.0.1
Description
The issue allows remote attackers to execute arbitrary code via a crafted HTML document, exploiting an unspecified vulnerability in the Render method in the ExportHTML.ocx ActiveX control in ExportHTML.dll.
Recommendations
For IBM SPSS Dimensions version 5.5, update to a version that fixes the issue in the ExportHTML.dll ActiveX control.
For SPSS Data Collection versions 5.6 through 6.0.1, update to a version that fixes the issue in the ExportHTML.dll ActiveX control.
As a temporary workaround, consider disabling the Render method in the ExportHTML.ocx ActiveX control until a patch is available.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Exporthtml.Dll
Exporthtml.Ocx
Ibm Spss Dimensions
Ibm Spss Data Collection