HP Info Center ActiveX Control Multiple Remote Vulnerabilities

This script is Copyright (C) 2007-2014 Tenable Network Security, Inc.


Synopsis :

The remote Windows host has an ActiveX control that is affected by
remote code execution vulnerabilities.

Description :

The remote host contains the HP Quick Launch Button software, part of
the HP Info Center software installed by default on many HP and
Compaq laptop models.

The version of this software on the remote host includes an ActiveX
control that reportedly contains three insecure methods -
'GetRegValue', 'SetRegValue', and 'LaunchApp' - that are marked as
'Safe for Scripting'. If a remote attacker can trick a user on the
affected host into visiting a specially crafted web page, these issues
could be leveraged to manipulate the remote registry or launch
arbitrary programs.

See also :

http://www.securityfocus.com/archive/1/484880/30/0/threaded
http://www.nessus.org/u?1a49e1bc

Solution :

Apply the appropriate patch as discussed in the vendor advisory above
and ensure that the version of the affected control is 2.0.0.0 or higher.

Risk factor :

High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 7.7
(CVSS2#E:F/RL:OF/RC:C)
Public Exploit Available : true

Family: Windows

Nessus Plugin ID: 29725 (hp_hpinfodll_activex.nasl)

Bugtraq ID: 26823

CVE ID: CVE-2007-6331
CVE-2007-6332
CVE-2007-6333

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now