PT-2013-1858 · Ibm · Ibm Spss Samplepower
Alexander Gavrun
·
Published
2013-04-30
·
Updated
2017-08-29
·
CVE-2012-5946
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IBM SPSS SamplePower version 3.0
Description
The issue is related to a buffer overflow in the c1sizer ActiveX control, which can be exploited to execute arbitrary code. This is achieved by providing a long
TabCaption string.Recommendations
For IBM SPSS SamplePower version 3.0, apply the fix provided in FP1 to resolve the issue.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Spss Samplepower