|
|
|
![]() |
Vulnerability Note VU#556801SolidWorks sldimdownload ActiveX control fails to restrict access to methodsOverviewThe SolidWorks sldimdownload ActiveX control contains methods that can allow a remote, unauthenticated attacker to run arbitrary code on a vulnerable system.I. DescriptionSolidWorks provides 3D CAD software solutions. The SolidWorks sldimdownload ActiveX control is provided by the file sldimdownload.dll. It contains a method called Run(), which takes installerpath and applicationarguments parameters. This method can be used to execute arbitrary applications that may reside on remote servers.II. ImpactBy convincing a victim to view an HTML document (web page, HTML email, or email attachment), an attacker could run arbitrary code with the privileges of the user running IE.III. SolutionInstall an updateThis issue has been addressed in the sldimdownload ActiveX control version 16,0,0,1. This version restricts the web domains that can use the control. To update, close all Internet Explorer windows. Go to %windir%\downloaded program files . Right click on sldimdownloadiface and select update. Please see the SolidWorks technical document for more information.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{AB6633A8-60A9-4F5D-B66C-ABE268CC3227}] "Compatibility Flags"=dword:00000400 Disabling ActiveX controls in the Internet Zone (or any zone used by an attacker) appears to prevent exploitation of this and other ActiveX vulnerabilities. Instructions for disabling ActiveX in the Internet Zone can be found in the "Securing Your Web Browser" document. Systems Affected
Referenceshttp://www.cert.org/tech_tips/securing_browser/#Internet_Explorer This vulnerability was reported by Will Dormann of CERT/CC. This document was written by Will Dormann.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||