CVE-2015-8530
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Stack-based buffer overflow in the Initialize function in an ActiveX control in IBM SPSS Statistics 19 and 20 before 20.0.0.2-IF0008, 21 before 21.0.0.2-IF0010, 22 before 22.0.0.2-IF0011, 23 before 23.0.0.3-IF0001, and 24 before 24.0.0.0-IF0003 allows remote authenticated users to execute arbitrary code via a long argument.
Desbordamiento de buffer basado en pila en la función Initialize en un control ActiveX en IBM SPSS Statistics 19 y 20 en versiones anteriores a 20.0.0.2-IF0008, 21 en versiones anteriores a 21.0.0.2-IF0010, 22 en versiones anteriores a 22.0.0.2-IF0011, 23 en versiones anteriores a 23.0.0.3-IF0001 y 24 en versiones anteriores a 24.0.0.0-IF0003 permite a usuarios remotos autenticados ejecutar código arbitrario a través de un argumento largo.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-12-08 CVE Reserved
- 2016-05-14 CVE Published
- 2024-08-06 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/90524 | Third Party Advisory | |
http://www.securitytracker.com/id/1035867 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21982035 | 2019-02-14 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Spss Statistics Search vendor "Ibm" for product "Spss Statistics" | >= 19.0.0.0 <= 19.0.0.2 Search vendor "Ibm" for product "Spss Statistics" and version " >= 19.0.0.0 <= 19.0.0.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Spss Statistics Search vendor "Ibm" for product "Spss Statistics" | >= 20.0.0.0 < 20.0.0.2 Search vendor "Ibm" for product "Spss Statistics" and version " >= 20.0.0.0 < 20.0.0.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Spss Statistics Search vendor "Ibm" for product "Spss Statistics" | >= 21.0.0.0 < 21.0.0.2 Search vendor "Ibm" for product "Spss Statistics" and version " >= 21.0.0.0 < 21.0.0.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Spss Statistics Search vendor "Ibm" for product "Spss Statistics" | >= 22.0.0.0 < 22.0.0.2 Search vendor "Ibm" for product "Spss Statistics" and version " >= 22.0.0.0 < 22.0.0.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Spss Statistics Search vendor "Ibm" for product "Spss Statistics" | >= 23.0.0.0 < 23.0.0.3 Search vendor "Ibm" for product "Spss Statistics" and version " >= 23.0.0.0 < 23.0.0.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Spss Statistics Search vendor "Ibm" for product "Spss Statistics" | 24.0.0.0 Search vendor "Ibm" for product "Spss Statistics" and version "24.0.0.0" | - |
Affected
|