HTTP: Sony XCP DRM Uninstaller CLSID Access
This signature detects attempts to exploit several security vulnerabilities against Sony XCP Web-Based Uninstaller ActiveX ClassID. Attackers can exploit these vulnerabilities by crafting a malicious Web site that can add, remove, run any program on your computer, or reboot your computer.
Extended Description
First 4 Internet CodeSupport is susceptible to a remote code execution vulnerability. The CodeSupport package can be told to download, and then execute arbitrary content from remote Web sites. As it fails to verify that the source of the remote content is from a trusted source, attackers may utilize it to download and execute malicious code from arbitrary sources, facilitating the remote compromise of targeted computers.
Affected Products
First4internet codesupport
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
First4internet
9.3