Help and Support Center Remote Code Execution

Strike ID:
E04-05j01
CVSS:
5.1 (AV:N/AC:H/Au:N/C:P/I:P/A:P)
False Positive:
f
Variants:
1
Year:
2004

Description

This strike generates an HTML page containing a malicious IFRAME. A browser which processes this IFRAME will make a Help and Support Center (HCP) request to the local system's HCP DVDUpgrade utility which will then download the requested executable and run it.

CVE

References

Bid