IBM Installation Manager URI Handling Argument Injection Vulnerability (Win)

Summary
This host has IBM Installation Manager installed and is prone to Argument Injection vulnerability.
Impact
Successful exploitation will allow attackers to execute arbitrary code or compromise a user's system. Impact Level: Application/System
Solution
Upgrade to version 1.3.3 or later, http://www-01.ibm.com/software/awdtools/installmanager/support
Insight
The flaw is due to error in 'IBMIM.exe' when handling arguments received via an 'iim:' URI. This can be exploited to load an arbitrary library from a network share via a specially crafted '-vm' argument.
Affected
IBM Installation Manager 1.3.2 and prior on Windows.
References