First published: Wed Jan 18 2012(Updated: )
Multiple unspecified vulnerabilities in the (1) PrintFile and (2) SaveDoc methods in the VsVIEW6 ActiveX control in VsVIEW6.ocx in IBM SPSS SamplePower 3.0 allow remote attackers to execute arbitrary code via a crafted HTML document.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM SPSS SamplePower | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0189 is considered a significant vulnerability due to its potential for remote code execution.
To fix CVE-2012-0189, update IBM SPSS SamplePower to the latest version provided by IBM.
CVE-2012-0189 affects IBM SPSS SamplePower version 3.0.
CVE-2012-0189 can be exploited through specially crafted HTML documents that target the VsVIEW6 ActiveX control.
Remote attackers can exploit CVE-2012-0189 to execute arbitrary code on susceptible systems.