EMC.Captiva.PixTools.Distributed

NameEMC.Captiva.PixTools.Distributed.Imaging.File.Creation
Release DateDec 15, 2009
SeverityCritical
ImpactSystem Compromise
DescriptionThis indicates an attack attempt against a vulnerability in EMC Captiva PixTools Distributed Imaging ActiveX Control.

The vulnerability is caused by an error when the vulnerable software handles a specially crafted web page. It allows a remote attacker to create or overwrite arbitrary files on a target host and potentially execute malicious code.
Affected ProductsEMC PDIControl.dll 2.2.3160 0
Recommended ActionsSet the kill bit for the CLSID {00200338-3D33-4FFC-AC20-67AA234325F3}.
Common Vulnerabilities and Exposures (CVE)http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3573
Reference/shttp://www.securityfocus.com/bid/36566 (BugTraq)
http://www.vupen.com/english/advisories/2009/2808
Reference: VID-17985