MS09-032: Cumulative Security Update of ActiveX Kill Bits (973346)

This script is Copyright (C) 2009-2013 Tenable Network Security, Inc.


Synopsis :

The remote Windows host is missing a security update containing
ActiveX kill bits.

Description :

The remote host is missing a list of kill bits for ActiveX controls
that are known to contain vulnerabilities.

If these ActiveX controls are ever installed on the remote host,
either now or in the future, they would expose it to various security
issues.

See also :

http://technet.microsoft.com/en-us/security/bulletin/MS09-032

Solution :

Microsoft has released a set of patches for Windows 2000, XP, 2003,
Vista and 2008.

Risk factor :

High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 7.7
(CVSS2#E:F/RL:OF/RC:C)
Public Exploit Available : true

Family: Windows : Microsoft Bulletins

Nessus Plugin ID: 39622 ()

Bugtraq ID: 35558

CVE ID: CVE-2008-0015