Intrusion Prevention

ABB.T.S.Viewer.CWGraph3D.ActiveX.Arbitrary.File.Creation

Description

This indicates an attack attempt against an Arbitrary File Creation vulnerability in ABB Test Signal Viewer.
The vulnerability, which is located in the "cw3dgrph.ocx" ActiveX control, can be exploited through misuse of a vulnerable method. A remote attacker may be able to exploit this to execute arbitrary code within the context of the application.

Affected Products

ABB Test Signal Viewer prior to 1.5

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Refer to the vendor's website for suggested workaround.
http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/8e134e13bfa25a0cc1257c0600459b16/$file/
SI10253A2%20rev%200%20.pdf

CVE References

CVE-2013-5022