|
|
|
|
| |
Credit:
The original article can be found at: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-3028
The original article can be found at: http://www.securityfocus.com/bid/36346
|
| |
Vulnerable Systems:
* Symantec Altiris Deployment Solution 6.9.x,
* Notification Server 6.0.x,
* Symantec Management Platform 7.0.x
Altiris eXpress NS SC Download ActiveX control is prone to a vulnerability that can allow malicious files to be downloaded and saved to arbitrary locations on an affected computer.
Attackers may exploit this issue to put malicious files in arbitrary locations and execute them within the context of the affected application that uses the affected control (typically Internet Explorer). Other attacks are also possible.
Vendor Status:
Symantec as issued an update for this vulnerablity
Patch Availability:
http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2009&suid=20090922_00
CVE Information:
CVE-2009-3028
|
|
|
|
|