Advantech / BroadWin WebAccess Client 'bwocxrun.ocx ' Multiple Remote Vulnerabilities

This script is Copyright (C) 2011-2014 Tenable Network Security, Inc.


Synopsis :

The remote Windows host has an ActiveX control that is affected by
multiple remote vulnerabilites.

Description :

The Advantech / BroadWin WebAccess Client ActiveX (bwocxrun.ocx)
installed on the remote host is reportedly affected by multiple issues
including a format string vulnerability and multiple memory corruption
vulnerabilities.

By tricking a victim into visiting a specially crafted web page, an
attacker could take advantage of one of these issues to execute
arbitrary code in the context of the application.

See also :

http://aluigi.altervista.org/adv/bwocxrun_1-adv.txt
http://www.us-cert.gov/control_systems/pdf/ICS-ALERT-11-245-01.pdf
http://www.nessus.org/u?d44f6112

Solution :

Either remove the software or set the kill bit for the affected
control.

Risk factor :

High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 8.4
(CVSS2#E:F/RL:W/RC:ND)
Public Exploit Available : true

Family: SCADA

Nessus Plugin ID: 56993 ()

Bugtraq ID: 49428

CVE ID: