
CVE-2021-38959
https://notcve.org/view.php?id=CVE-2021-38959
17 Nov 2021 — IBM SPSS Statistics for Windows 24.0, 25.0, 26.0, 27.0, 27.0.1, and 28.0 could allow a local user to cause a denial of service by writing arbitrary files to admin protected directories on the system. IBM X-Force ID: 212046. IBM SPSS Statistics para Windows versiones 24.0, 25.0, 26.0, 27.0, 27.0.1 y 28.0, podría permitir a un usuario local causar una denegación de servicio escribiendo archivos arbitrarios en directorios protegidos por el administrador del sistema. IBM X-Force ID: 212046 • https://exchange.xforce.ibmcloud.com/vulnerabilities/212046 • CWE-787: Out-of-bounds Write •

CVE-2015-8530
https://notcve.org/view.php?id=CVE-2015-8530
14 May 2016 — Stack-based buffer overflow in the Initialize function in an ActiveX control in IBM SPSS Statistics 19 and 20 before 20.0.0.2-IF0008, 21 before 21.0.0.2-IF0010, 22 before 22.0.0.2-IF0011, 23 before 23.0.0.3-IF0001, and 24 before 24.0.0.0-IF0003 allows remote authenticated users to execute arbitrary code via a long argument. Desbordamiento de buffer basado en pila en la función Initialize en un control ActiveX en IBM SPSS Statistics 19 y 20 en versiones anteriores a 20.0.0.2-IF0008, 21 en versiones anteriore... • http://www-01.ibm.com/support/docview.wss?uid=swg21982035 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •