Release date:
Updated on:
Affected Systems:
ComponentOne FlexGrid 7.1 Light
ComponentOne FlexGrid 7
Description:
--------------------------------------------------------------------------------
Bugtraq id: 51601
Cve id: CVE-2012-0227, CVE-2012-5311
ComponentOne FlexGrid is a table control tool used to create various user interfaces.
ComponentOne FlexGrid 7.1 and other versions have security vulnerabilities. After successful exploitation, attackers can execute arbitrary code in the context of the affected application.
<* Source: Alexander R Polyakov
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
ComponentOne
------------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.componentone.com/