CVE-2011-2658: Medium severity Novell ZENworks Configuration Management vulnerability
The ISList.ISAvi ActiveX control in AdminStudio in Novell ZENworks Configuration Management (ZCM) 10.2, 10.3, and 11 SP1 provides access to the mscomct2.ocx file, which allows remote attackers to execute arbitrary code by leveraging unspecified mscomct2 flaws.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2011-2658?
CVE-2011-2658 has a critical severity rating due to the potential for remote code execution.
How do I fix CVE-2011-2658?
The recommended fix for CVE-2011-2658 is to upgrade to a patched version of Novell ZENworks Configuration Management.
Which versions are affected by CVE-2011-2658?
CVE-2011-2658 affects Novell ZENworks Configuration Management versions 10.2, 10.3, and 11 SP1.
What is the main risk associated with CVE-2011-2658?
The main risk associated with CVE-2011-2658 is that attackers can execute arbitrary code remotely on vulnerable systems.
Is there a workaround for CVE-2011-2658?
There are no known effective workarounds for CVE-2011-2658, so upgrading is the best course of action.