CVE-2012-5946
IBM Spss Samplepower - Memory Corruption
Title source: ruleDescription
Buffer overflow in the c1sizer ActiveX control in C1sizer.ocx in IBM SPSS SamplePower 3.0 before FP1 allows remote attackers to execute arbitrary code via a long TabCaption string.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/25814
metasploit
WORKING POC
NORMAL
by Alexander Gavrun, juan vazquez · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/ibm_spss_c1sizer.rb
Scores
EPSS
0.6617
EPSS Percentile
98.5%
Classification
CWE
CWE-119
Status
draft
Affected Products (1)
ibm/spss_samplepower
Timeline
Published
Apr 30, 2013
Tracked Since
Feb 18, 2026