HTTP RULE(RULE ID:336652)

Rule General Information
Release Date: 2022-06-21
Rule Name: MW6 Aztec ActiveX Control Buffer Overflow Vulnerability (CVE-2013-6040)
Severity: Critical
CVE ID: CVE-2013-6040
Rule Protection Details
Description: Multiple unspecified vulnerabilities in the MW6 Aztec, DataMatrix, and MaxiCode ActiveX controls allow remote attackers to execute arbitrary code via a crafted HTML document.
Impact: A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks includes arbitrary code execution and denial of service.
Affected OS: Windows, Linux, Others
Reference: ExploitDB:31176
ExploitDB:31177
http://www.kb.cert.org/vuls/id/219470
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
http://www.mw6tech.com/