- Description
- Unspecified vulnerability in the SetLicenseInfoEx method in an ActiveX control in mraboutb.dll in IBM SPSS Dimensions 5.5 and SPSS Data Collection 5.6, 6.0, and 6.0.1 allows remote attackers to execute arbitrary code via a crafted HTML document.
- Source
- psirt@us.ibm.com
- NVD status
- Modified
CVSS 2.0
- Type
- Primary
- Base score
- 9.3
- Impact score
- 10
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:C/I:C/A:C
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:ibm:spss_data_collection:5.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "EBD74B7A-70F6-4EF3-BA59-884BF747B87A"
},
{
"criteria": "cpe:2.3:a:ibm:spss_data_collection:6.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "ED735680-3700-4744-857C-EA2F005D89E6"
},
{
"criteria": "cpe:2.3:a:ibm:spss_data_collection:6.0.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "673496DB-11BB-4FEB-9772-175F5D45859F"
},
{
"criteria": "cpe:2.3:a:ibm:spss_dimensions:5.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3C10724E-2F42-4B5D-8D16-4738C5567547"
}
],
"operator": "OR"
}
]
}
]