Microsoft Internet Explorer Macrovision InstallShield Update Service ActiveX Control Code Execution

  Severity: CRITICAL
  CVE Identifier: CVE-2007-5660
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXnet Connect and InstallShield 2008 allows remote attackers to execute arbitrary code via an unspecified "unsafe method," possibly involving a buffer overflow.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1001170
  Trend Micro Deep Security DPI Rule Name: 1001170 - Microsoft Internet Explorer Macrovision InstallShield Update Service ActiveX Control Code Execution

  AFFECTED SOFTWARE AND VERSION

  • Macrovision FLEXnet Connect
  • Macrovision InstallShield 2008
  • Macrovision Update Service 3.0
  • Macrovision Update Service 4.0
  • Macrovision Update Service 5.0
  • Macrovision Update Service 5.1.100_47363
  • Macrovision Update Service 6.0.100_60146
  • Microsoft Internet Explorer

Featured Stories