First published: Sat Feb 01 2014(Updated: )
Unspecified vulnerability in the vsflex8l ActiveX control in IBM SPSS SamplePower 3.0.1 before FP1 IF1 allows remote attackers to execute arbitrary code via a crafted ComboList property value.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM SPSS SamplePower | =3.0.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-6724 has been classified as a critical vulnerability due to its potential to allow arbitrary code execution.
To remediate CVE-2013-6724, install the latest patch or update for IBM SPSS SamplePower 3.0.1, specifically FP1 IF1.
Users of IBM SPSS SamplePower version 3.0.1.0 are at risk of exploitation from CVE-2013-6724.
CVE-2013-6724 is classified as an arbitrary code execution vulnerability in an ActiveX control.
Yes, CVE-2013-6724 can be exploited remotely through crafted ComboList property values.