Short Name |
HTTP:STC:CLSID:ACTIVEX:AX-151
|
Severity |
Medium
|
Recommended |
No
|
Recommended Action |
Drop
|
Category |
HTTP
|
Keywords |
Dangerous ClassID in ActiveX Object Type 151
|
Release Date |
2006/10/19
|
Update Number |
1213
|
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+
|
HTTP: Dangerous ClassID in ActiveX Object Type 151
This signature detects attempts to exploit a known vulnerability against Internet Explorer. An attacker can create a malicious Web site containing dangerous ActiveX CLSID references, which if accessed by a victim, allows the attacker to gain control of victim's client browsers.
Extended Description
Microsoft Internet Explorer is prone to a memory corruption vulnerability that is related to the instantiation of COM objects.
COM objects may corrupt system memory and facilitate arbitrary code execution in the context of the currently logged in user on the affected computer.
Affected Products
- Avaya DefinityOne Media Servers R10
- Avaya DefinityOne Media Servers R11
- Avaya DefinityOne Media Servers R12
- Avaya DefinityOne Media Servers R6
- Avaya DefinityOne Media Servers R7
- Avaya DefinityOne Media Servers R8
- Avaya DefinityOne Media Servers R9
- Avaya DefinityOne Media Servers
- Avaya IP600 Media Servers R10
- Avaya IP600 Media Servers R11
- Avaya IP600 Media Servers R12
- Avaya IP600 Media Servers R6
- Avaya IP600 Media Servers R7
- Avaya IP600 Media Servers R8
- Avaya IP600 Media Servers R9
- Avaya IP600 Media Servers
- Avaya Modular Messaging (MAS)
- Avaya S8100 Media Servers R10
- Avaya S8100 Media Servers R11
- Avaya S8100 Media Servers R12
- Avaya S8100 Media Servers R6
- Avaya S8100 Media Servers R7
- Avaya S8100 Media Servers R8
- Avaya S8100 Media Servers R9
- Avaya S8100 Media Servers
- Avaya Unified Communications Center S3400
- Microsoft Internet Explorer 5.0.1
- Microsoft Internet Explorer 5.0.1 SP1
- Microsoft Internet Explorer 5.0.1 SP2
- Microsoft Internet Explorer 5.0.1 SP3
- Microsoft Internet Explorer 5.0.1 SP4
- Microsoft Internet Explorer 5.5
- Microsoft Internet Explorer 5.5 SP1
- Microsoft Internet Explorer 5.5 SP2
- Microsoft Internet Explorer 6.0
- Microsoft Internet Explorer 6.0 SP1
References