CVE-2013-0501

The EdrawSoft EDOFFICE.EDOfficeCtrl.1 ActiveX control, as used in Edraw Office Viewer Component, the client in IBM Cognos Disclosure Management (CDM) 10.2.0, and other products, allows remote attackers to read arbitrary files, or download an arbitrary program onto a client machine and execute this program, via a crafted web site.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:cognos_disclosure_management:10.2.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2013-04-12 19:55

Updated : 2024-02-04 18:16


NVD link : CVE-2013-0501

Mitre link : CVE-2013-0501

CVE.ORG link : CVE-2013-0501


JSON object : View

Products Affected

ibm

  • cognos_disclosure_management
CWE
CWE-264

Permissions, Privileges, and Access Controls