CVE-2011-1207
Published May 5, 2011
Last updated a year ago
Overview
- Description
- The ActiveBar1 ActiveX control in the Data Dynamics ActiveBar ActiveX controls, as distributed in ActBar.ocx 1.0.6.5 in IBM Rational System Architect 11.4.0.2, 11.4.0.1, and earlier, does not properly restrict the SetLayoutData method, which allows remote attackers to execute arbitrary code via a crafted Data argument, a different vulnerability than CVE-2007-3883. NOTE: some of these details are obtained from third party information.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 9.3
- Impact score
- 10
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-863
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:rational_system_architect:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EF7EECC6-5489-4473-872E-E6831152AA27", "versionEndIncluding": "11.4.0.2" }, { "criteria": "cpe:2.3:a:ibm:rational_system_architect:11.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14EFA142-B129-4371-AECE-E0973A41E54A" }, { "criteria": "cpe:2.3:a:ibm:rational_system_architect:11.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1475F116-FBFF-4399-9DA1-00FD763B9444" }, { "criteria": "cpe:2.3:a:ibm:rational_system_architect:11.3.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8C2BCB9D-8D93-427F-9BC4-13296BA7815A" }, { "criteria": "cpe:2.3:a:ibm:rational_system_architect:11.3.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "06819BBC-4D20-4F57-8EFE-3E9243C0218F" }, { "criteria": "cpe:2.3:a:ibm:rational_system_architect:11.3.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB708B67-2212-40A8-9DAF-D44ABF6EA2DF" }, { "criteria": "cpe:2.3:a:ibm:rational_system_architect:11.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "21CE8B3D-4F13-4D91-AD88-DB99911BB78D" }, { "criteria": "cpe:2.3:a:ibm:rational_system_architect:11.4.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2D60E40D-98B8-4257-8718-55B008F5034A" } ], "operator": "OR" } ] } ]