CyberSec.Space Logo
返回 CVE 浏览器

CVE-2011-5167

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.1330%
EPSS Percentile38.21th
Published2012年9月15日
Last Modified2026年4月29日

Vulnerability Description

Heap-based buffer overflow in the SetDevNames method of the Tidestone Formula One ActiveX control (TTF16.ocx) 6.3.5 Build 1 in Oracle Hyperion Strategic Finance 12.x and possibly earlier allows remote attackers to execute arbitrary code via a long string to the DriverName parameter.

Affected Platforms (CPE)

📦
Oracle

Hyperion Strategic Finance

<= 12.0
📦
Oracle

Hyperion Strategic Finance

= 11.1.2.1.0
📦
Tidestone

Formula One Activex Control

= 6.3.5.1

References & Advisories

相关漏洞威胁