HTTP: IBM Access Support Unsafe ActiveX Method

This signature detects attempts to exploit a known vulnerability in IBM Access Support. An attacker can create a malicious Web site containing dangerous ActiveX controls, which if accessed by a victim, allows the attacker to gain control of the victim's client browser.

Extended Description

IBM eGatherer ActiveX is prone to a stack-based buffer-overflow vulnerability. This vulnerability requires a certain amount of user-interaction for an attack to occur, such as visiting a malicious website. A successful exploit would allow a remote attacker to execute code with the privileges of the currently logged-in user. Versions prior to IBM eGatherer ActiveX 3.20.0284.0 are vulnerable.

Affected Products

Ibm egatherer

References

BugTraq: 34228 19554

CVE: CVE-2009-0215

Short Name
HTTP:STC:ACTIVEX:IBM-ACCESS
Severity
Major
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
Access ActiveX CVE-2006-4221 CVE-2009-0215 IBM Method Support Unsafe bid:19554 bid:34228
Release Date
07/25/2011
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3657
False Positive
Occasionally
Vendors

Ibm

CVSS Score

9.3

Found a potential security threat?