Gravité: : Critique
  Identifiant(s) CVE: : CVE-2007-5660
  Date du conseil: 21 juillet 2015

  Description

Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXnet Connect and InstallShield 2008 allows remote attackers to execute arbitrary code via an unspecified "unsafe method," possibly involving a buffer overflow.

  Information Exposure Rating:

Apply associated Trend Micro DPI Rules.

  Solutions

  Trend Micro Deep Security DPI Rule Number: 1001170
  Trend Micro Deep Security DPI Rule Name: 1001170 - Microsoft Internet Explorer Macrovision InstallShield Update Service ActiveX Control Code Execution

  Affected software and version:

  • Macrovision FLEXnet Connect
  • Macrovision InstallShield 2008
  • Macrovision Update Service 3.0
  • Macrovision Update Service 4.0
  • Macrovision Update Service 5.0
  • Macrovision Update Service 5.1.100_47363
  • Macrovision Update Service 6.0.100_60146
  • Microsoft Internet Explorer