"evaluatorComment":"Per: http://cwe.mitre.org/data/definitions/77.html\r\n\r\n\"CWE-77: Improper Sanitization of Special Elements used in a Command ('Command Injection')\"",
"descriptions":[
{
"lang":"en",
"value":"The ExecuteExe method in the DVBSExeCall Control ActiveX control 1.0.0.1 in DVBSExeCall.ocx in DATEV Base System (aka Grundpaket Basis) allows remote attackers to execute arbitrary commands via unspecified vectors."
},
{
"lang":"es",
"value":"El m\u00e9todo ExecuteExe en el control ActiveX DVBSExeCall v1.0.0.1 en DVBSExeCall.ocx en DATEV Base System (tambi\u00e9n conocido como Grundpaket Basis) permite a atacantes remotos a ejecutar comandos de su elecci\u00f3n a trav\u00e9s de vectores no especificados."