The Microsoft VFP_OLE_Server ActiveX control allows remote attackers to execute arbitrary code by invoking the foxcommand method.
https://www.exploit-db.com/exploits/4875
https://exchange.xforce.ibmcloud.com/vulnerabilities/39559
https://euvd.enisa.europa.eu/vulnerability/EUVD-2008-0247
http://www.securityfocus.com/bid/27199
http://shinnai.altervista.org/exploits/txt/TXT_rNowA1916DKFNUF48NyS.html
http://secunia.com/advisories/28417
http://packetstormsecurity.org/0801-exploits/msvfpole-exec.txt