IDAutomation Barcode ActiveX Controls Multiple Arbitrary File Overwrite Vulnerabilities
BID:29204
Info
IDAutomation Barcode ActiveX Controls Multiple Arbitrary File Overwrite Vulnerabilities
| Bugtraq ID: | 29204 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-2283 |
| Remote: | Yes |
| Local: | No |
| Published: | May 14 2008 12:00AM |
| Updated: | May 07 2015 05:28PM |
| Credit: | Nikolas Sotiriu |
| Vulnerable: |
ID Automation PDF417 Barcode Font and Encoder 1.6.0.6 ID Automation Linear Barcode ActiveX Control 1.6.0.6 ID Automation Data Matrix Barcode Font & Encoder 1.6.0.6 ID Automation Aztec Barcode Font & Encoder 1.7.1.0 AnNoText AdvoMahn 21.0 AnNoText AdvoAkte 17.0 |
| Not Vulnerable: | |
Discussion
IDAutomation Barcode ActiveX Controls Multiple Arbitrary File Overwrite Vulnerabilities
IDAutomation Barcode ActiveX controls are prone to multiple vulnerabilities that allow attackers to overwrite arbitrary files.
An attacker can exploit these issues by enticing an unsuspecting victim to view a malicious HTML page.
Successfully exploiting these issues will allow the attacker to corrupt and overwrite arbitrary files on the victim's computer in the context of the vulnerable application, typically Internet Explorer, using the ActiveX control.
The following applications are vulnerable:
Linear Barcode ActiveX Control 1.6.0.6
Data Matrix Barcode Font & Encoder 1.6.0.6
PDF417 Barcode Font and Encoder 1.6.0.6
Aztec Barcode Font & Encoder 1.7.1.0
AnNoText AdvoAkte 17.0
AnNoText AdvoMahn 21.0
Other versions may also be affected.
IDAutomation Barcode ActiveX controls are prone to multiple vulnerabilities that allow attackers to overwrite arbitrary files.
An attacker can exploit these issues by enticing an unsuspecting victim to view a malicious HTML page.
Successfully exploiting these issues will allow the attacker to corrupt and overwrite arbitrary files on the victim's computer in the context of the vulnerable application, typically Internet Explorer, using the ActiveX control.
The following applications are vulnerable:
Linear Barcode ActiveX Control 1.6.0.6
Data Matrix Barcode Font & Encoder 1.6.0.6
PDF417 Barcode Font and Encoder 1.6.0.6
Aztec Barcode Font & Encoder 1.7.1.0
AnNoText AdvoAkte 17.0
AnNoText AdvoMahn 21.0
Other versions may also be affected.
Exploit / POC
IDAutomation Barcode ActiveX Controls Multiple Arbitrary File Overwrite Vulnerabilities
An attacker can exploit these issues by enticing an unsuspecting victim to follow a malicious URI.
The following proof of concept is available:
An attacker can exploit these issues by enticing an unsuspecting victim to follow a malicious URI.
The following proof of concept is available:
Solution / Fix
IDAutomation Barcode ActiveX Controls Multiple Arbitrary File Overwrite Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
IDAutomation Barcode ActiveX Controls Multiple Arbitrary File Overwrite Vulnerabilities
References:
References:
- AnNoText Third-Party ActiveX Control Buffer (Nikolas Sotiriu)
- IDAutomation Aztec Barcode Font & Encoder Homepage (IDAutomation)
- IDAutomation Barcode ActiveX Control & DLL Homepage (IDAutomation)
- IDAutomation Data Matrix Barcode Font & Encoder Homepage (IDAutomation)
- IDAutomation Homepage (IDAutomation)
- IDAutomation multiple vulnerabilities (shinnai)
- IDAutomation PDF417 Barcode Font and Encoder Homepage (IDAutomation)
- nNoText Third-Party ActiveX Control Buffer Overflow (Nikolas Sotiriu)