HTTP: JView Profiler Unsafe ActiveX Control - 2
This signature detects attempts to exploit a known vulnerability against Internet Explorer. The attacker can create a malicious Web site containing dangerous ActiveX CLSID references, which if accessed by a victim, allows the attacker to gain control of victim's client browser.
Extended Description
Microsoft Internet Explorer is prone to a heap-based buffer-overflow vulnerability that occurs when the 'javaprxy.dll' COM object is instantiated by a malicious webpage. Attackers may exploit this issue to execute arbitrary code in the context of the client.
Affected Products
Microsoft internet_explorer
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Nortel_networks
Microsoft
5.0
5.1