CVE-2012-0189

IBM SPSS SamplePower 3.0 - Remote Code Execution via VsVIEW6 ActiveX Control

Title source: llm
STIX 2.1

Description

Multiple unspecified vulnerabilities in the (1) PrintFile and (2) SaveDoc methods in the VsVIEW6 ActiveX control in VsVIEW6.ocx in IBM SPSS SamplePower 3.0 allow remote attackers to execute arbitrary code via a crafted HTML document.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/72119
Vendor Advisory x_refsource_confirm
http://www.ibm.com/support/docview.wss?uid=swg21577951
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/47605

Scores

EPSS 0.0450
EPSS Percentile 90.5%

Details

Status published
Products (1)
ibm/spss_samplepower 3.0
Published Jan 18, 2012
Tracked Since Feb 18, 2026