vendor:
DecisionTools Suite
by:
Francis Provencher
7.5
CVSS
HIGH
Code Execution
CWE
Product Name: DecisionTools Suite
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows
2012
DecisionTools SharpGrid ActiveX Control Code Execution Vulnerability
The vulnerability is caused due to the "Images" property in the SharpGrid ActiveX control insecurely using the assigned value as an image list pointer and can be exploited to call a virtual function within an arbitrary memory location.
Mitigation:
Apply the latest security updates provided by the vendor.