This script is Copyright (C) 2009-2014 Tenable Network Security, Inc.
The remote Windows host has an ActiveX control that allows execution
of arbitrary code.
The Altiris.AeXNSPkgDL.1 ActiveX control, a component of Altiris
Deployment Solution, Altiris Notification Server, and Symantec
Management Platform, is installed on the remote Windows host.
The installed version of this control provides an unsafe method, named
If an attacker can trick a user on the affected host into viewing a
specially crafted HTML document, this issue could be leveraged to
download and execute arbitrary code on the affected system subject
to the user's privileges.
See also :
Either set the kill bit or apply the vendor's hotfix to upgrade the
control to version 22.214.171.1240 or later.
Risk factor :
High / CVSS Base Score : 9.3
CVSS Temporal Score : 7.7
Public Exploit Available : true