Microsoft Internet Explorer Macrovision InstallShield Update Service ActiveX Control Code Execution
Severity: CRITICAL
CVE Identifier: CVE-2007-5660
Advisory Date: JUL 21, 2015
DESCRIPTION
Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXnet Connect and InstallShield 2008 allows remote attackers to execute arbitrary code via an unspecified "unsafe method," possibly involving a buffer overflow.
TREND MICRO PROTECTION INFORMATION
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1001170
Trend Micro Deep Security DPI Rule Name: 1001170 - Microsoft Internet Explorer Macrovision InstallShield Update Service ActiveX Control Code Execution
AFFECTED SOFTWARE AND VERSION
- Macrovision FLEXnet Connect
- Macrovision InstallShield 2008
- Macrovision Update Service 3.0
- Macrovision Update Service 4.0
- Macrovision Update Service 5.0
- Macrovision Update Service 5.1.100_47363
- Macrovision Update Service 6.0.100_60146
- Microsoft Internet Explorer