Quest vWorkspace contains an ActiveX control that allows for arbitrary file-overwrites. If successfully leveraged, an attacker may be able to overwrite arbitrary files on a vulnerable system.
Quest Software (Dell)
- Quest vWorkspace 7.5
BeyondTrust Prevention and Detection:
BeyondTrust's Retina® Network Security Scanner scans devices to detect for this vulnerability.
- 16190 - Quest vWorkspace ActiveX Vulnerability (Zero-Day)
Set the kill-bit for the vulnerable ActiveX control: D9397163-A2DB-4A4A-B2C9-34E876AF2DFC.