This application requires Javascript for optimal performance.

Adobe.Get.Atlcom.ActiveX.Control.Access

Release Date

Jan 12, 2010

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attempt to exploit a code-execution vulnerability in the Adobe get_atlcom Class.

The vulnerability is located in the "gp.ocx" ActiveX control through misuse of multiple vulnerable properties. It may allow remote attackers to execute arbitrary code in vulnerable systems.

Affected Products

Adobe Reader 9.2 and earlier versions for Windows, Macintosh, and UNIX
Adobe Acrobat 9.2 and earlier versions for Windows and Macintosh

Recommended Actions

Apply the patch supplied by the vendor:
http://www.adobe.com/support/security/bulletins/apsb10-02.html

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2009-3958
CVE-2010-1278

Reference: VID-18104