CVE-2012-0198: IBM Tivoli Provisioning Manager Express For Software Distribution

High severity, CVSS 9.3. EPSS: 37.4% chance of exploitation in the next 30 days.

Stack-based buffer overflow in the RunAndUploadFile method in the Isig.isigCtl.1 ActiveX control in IBM Tivoli Provisioning Manager Express for Software Distribution 4.1.1 allows remote attackers to execute arbitrary code via vectors related to an Asset Information file.

Affected products

  • IBM Tivoli Provisioning Manager Express For Software Distribution: version 4.1.1 only

Published 2012-03-06. Last modified 2026-06-16.