Secunia Logo
 
CVE Reference: CVE-2007-6654
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-6654

Description:
Buffer overflow in a certain ActiveX control in Macrovision InstallShield Update Service Web Agent 5.1.100.47363 allows remote attackers to execute arbitrary code via a long string in the ProductCode argument (second argument) to the DownloadAndExecute method, a different vulnerability than CVE-2007-0321, CVE-2007-2419, and CVE-2007-5660.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/39204

OSVDB
  39980

MILW0RM
  http://www.milw0rm.com/exploits/4819

FULLDISC
  http://lists.grok.org.uk/pipermail/full-disclosure/2007-December/059288.html


Return to the previous page.