HomeCommunitySecurity Blog

Security Blog

 

Threat Lab Report: Troj.Downloader.JS.Agent.bgt

Posted By Netgear Threat Lab at 1:37 PM, November 6, 2009

Description of Report (Troj.Downloader.JS.Agent.bgt):

This malicious program exploits vulnerability CVE-2008-4699.
The Peachtree Accounting ActiveX control (PAWWeb11.ocx) with CLSID:2BCEAECE-6121-4E78-816C-8CD3121361B0 is prone to a remote code-execution vulnerability. The vulnerability is caused due to the PAWWeb11.ocx ActiveX control containing the insecure method "ExecutePreferredApplication()". By persuading a victim to visit a specially-crafted Web page, an attacker could exploit this vulnerability to execute arbitrary code on the system with the privileges of the user.

Affected Version: Peachtree Accounting 2004

Posted by: Netgear Threat Lab at 1:37 PM
Categories: Malware , Netgear Threat Lab , Viruses

No TrackBacks

TrackBack URL: http://prosecure.netgear.com/cgi-bin/mt/mt-tb.cgi/59

Comments