MS KB969898: Cumulative Security Update of ActiveX Kill Bits

This script is Copyright (C) 2009-2017 Tenable Network Security, Inc.


Synopsis :

The remote Windows host is missing a security update containing
ActiveX kill bits.

Description :

The remote host is missing a list of kill bits for ActiveX controls
that are known to contain vulnerabilities.

If these ActiveX controls are ever installed on the remote host,
either now or in the future, they would expose it to various security
issues.

See also :

http://technet.microsoft.com/en-us/security/advisory/969898

Solution :

Microsoft has released an advisory about this.

Risk factor :

Medium / CVSS Base Score : 5.1
(CVSS2#AV:N/AC:H/Au:N/C:P/I:P/A:P)
CVSS Temporal Score : 4.2
(CVSS2#E:F/RL:OF/RC:C)
Public Exploit Available : true

Family: Windows

Nessus Plugin ID: 39350 ()

Bugtraq ID: 33918
35218
35247
35248

CVE ID: CVE-2008-0024
CVE-2008-2475
CVE-2009-0208

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now