IBM SPSS SamplePower Vsflex8l ActiveX Control Second Buffer Overflow Exploit

A vulnerability when assign a malformed string to the ColComboList property, the module Vsflex8l does not properly check the size before copies the string into a static buffer. This module runs a web server waiting for vulnerable clients (Internet Explorer) to connect to it.
Exploit Platform
Exploit Type
Product Name