Unrated severityNVD Advisory· Published Apr 12, 2013· Updated Jun 16, 2026
CVE-2013-0501
CVE-2013-0501
Description
The EdrawSoft EDOFFICE.EDOfficeCtrl.1 ActiveX control, as used in Edraw Office Viewer Component, the client in IBM Cognos Disclosure Management (CDM) 10.2.0, and other products, allows remote attackers to read arbitrary files, or download an arbitrary program onto a client machine and execute this program, via a crafted web site.
Affected products
3cpe:2.3:a:ibm:cognos_disclosure_management:10.2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:ibm:cognos_disclosure_management:10.2.0:*:*:*:*:*:*:*
- (no CPE)range: =10.2.0
Patches
Vulnerability mechanics
References
2- www.ibm.com/support/docview.wssnvdVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/82345nvd
News mentions
0No linked articles in our index yet.