Microsoft Internet Explorer Macrovision InstallShield Update Service ActiveX Control Code Execution
Publish Date: 21 de июля de 2015
Severity: : Critical
CVE Kennungen: : CVE-2007-5660
Advisory Date: 21 de июля de 2015
DESCRIPTION
Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXnet Connect and InstallShield 2008 allows remote attackers to execute arbitrary code via an unspecified "unsafe method," possibly involving a buffer overflow.
INFORMATION EXPOSURE
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1001170
Trend Micro Deep Security DPI Rule Name: 1001170 - Microsoft Internet Explorer Macrovision InstallShield Update Service ActiveX Control Code Execution
AFFECTED SOFTWARE AND VERSION:
- Macrovision FLEXnet Connect
- Macrovision InstallShield 2008
- Macrovision Update Service 3.0
- Macrovision Update Service 4.0
- Macrovision Update Service 5.0
- Macrovision Update Service 5.1.100_47363
- Macrovision Update Service 6.0.100_60146
- Microsoft Internet Explorer