Intrusion Prevention

Authentium.Command.On.Demand.Buffer.Overflow

Description

This indicates an attack attempt against a buffer overflow vulnerability in the Authentium Command On Demand Online scanner ActiveX control.
The vulnerability is caused by an error when the vulnerable software handles a specially crafted argument to the InstallProduct1 method. It allows a remote attacker to execute arbitrary code.

Affected Products

Authentium CSS Web Installer 1.4.9508 .605
Authentium Command On Demand Online Scan

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

There are no vendor supplied patches available at this time.