cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-43855,https://securityvulnerability.io/vulnerability/CVE-2022-43855,IBM SPSS Statistics Denial of Service Vulnerability,"IBM SPSS Statistics versions 26.0, 27.0.1, and 28.0 present a vulnerability that allows a local user to create multiple files, potentially exhausting the system's file handle capacity. This situation may lead to performance degradation and denial of service, affecting the availability of the service for legitimate users. Organizations utilizing these versions should assess their exposure to this vulnerability and consider implementing mitigations as recommended by IBM.",IBM,Spss Statistics,5.5,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-03-08T17:52:57.326Z,0 CVE-2021-38959,https://securityvulnerability.io/vulnerability/CVE-2021-38959,Local Denial of Service in IBM SPSS Statistics for Windows,"IBM SPSS Statistics for Windows versions 24.0, 25.0, 26.0, 27.0, 27.0.1, and 28.0 contains a vulnerability that enables local users to cause a denial of service. This occurs when a user gains unauthorized write access to admin protected directories, leading to potential disruption of services. This flaw highlights the necessity for strict access controls and regular software updates to mitigate misuse.",IBM,Spss Statistics,6.2,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2021-11-17T14:15:00.000Z,0 CVE-2015-8530,https://securityvulnerability.io/vulnerability/CVE-2015-8530,,"Stack-based buffer overflow in the Initialize function in an ActiveX control in IBM SPSS Statistics 19 and 20 before 20.0.0.2-IF0008, 21 before 21.0.0.2-IF0010, 22 before 22.0.0.2-IF0011, 23 before 23.0.0.3-IF0001, and 24 before 24.0.0.0-IF0003 allows remote authenticated users to execute arbitrary code via a long argument.",IBM,Spss Statistics,6.5,MEDIUM,0.5710399746894836,false,,false,false,false,,,false,false,,2016-05-14T15:00:00.000Z,0 CVE-2015-7489,https://securityvulnerability.io/vulnerability/CVE-2015-7489,,"IBM SPSS Statistics 22.0.0.2 before IF10 and 23.0.0.2 before IF7 uses weak permissions (Everyone: Write) for Python scripts, which allows local users to gain privileges by modifying a script.",IBM,Spss Statistics,7.8,HIGH,0.0006699999794363976,false,,false,false,false,,,false,false,,2016-01-01T00:00:00.000Z,0 CVE-2015-0140,https://securityvulnerability.io/vulnerability/CVE-2015-0140,,An unspecified ActiveX control in IBM SPSS Statistics 22.0 through FP1 on 32-bit platforms allows remote attackers to execute arbitrary code via a crafted HTML document.,IBM,Spss Statistics,,,0.013460000045597553,false,,false,false,false,,,false,false,,2015-05-25T14:00:00.000Z,0