CyberSec.Space Logo
Back to CVE Browser

CVE-2011-5167

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.1330%
EPSS Percentile38.21th
PublishedSep 15, 2012
Last ModifiedApr 29, 2026

Vulnerability Description

Heap-based buffer overflow in the SetDevNames method of the Tidestone Formula One ActiveX control (TTF16.ocx) 6.3.5 Build 1 in Oracle Hyperion Strategic Finance 12.x and possibly earlier allows remote attackers to execute arbitrary code via a long string to the DriverName parameter.

Affected Platforms (CPE)

πŸ“¦
Oracle

Hyperion Strategic Finance

<= 12.0
πŸ“¦
Oracle

Hyperion Strategic Finance

= 11.1.2.1.0
πŸ“¦
Tidestone

Formula One Activex Control

= 6.3.5.1

References & Advisories

Related Vulnerabilities