The AnnotationX.AnnList.1 ActiveX control in Agilent Technologies Feature Extraction allows remote attackers to execute arbitrary code via a crafted object parameter in the Insert function, related to “Index Out-Of-Bounds.”
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2092
Reference (s):
- BID:72840
- URL: http://www.securityfocus.com/bid/72840
- http://www.zerodayinitiative.com/advisories/ZDI-15-053/