Remote Code Execution Vulnerability in IBM Access Support eGatherer ActiveX Control
CVE-2004-2663

Currently unrated

Key Information:

Vendor
IBM
Status
Vendor
CVE Published:
31 December 2004

Summary

The IBM Access Support eGatherer ActiveX control suffers from a vulnerability that permits remote attackers to exploit the 'SetDebugging' and 'RunEgatherer' methods. Through this exploitation, attackers can create files with arbitrary content, potentially placing a malicious .hta file within the Startup folder. This vulnerability raises serious security concerns as it enables unauthorized actions on affected systems.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.