CVE-2009-3737

Publication date

2010-08-17 17:31:00

Family

certcc

State

PUBLISHED

Description

The Oracle Siebel Option Pack for IE ActiveX control does not properly initialize memory that is used by the NewBusObj method, which allows remote attackers to execute arbitrary code via a crafted HTML document.