Back to search
CVE-2007-5661
Published: Apr 4, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
The Macrovision InstallShield InstallScript One-Click Install (OCI) ActiveX control 12.0 before SP2 does not validate the DLL files that are named as parameters to the control, which allows remote attackers to download arbitrary library code onto a client machine.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
1019735
vdb-entry
x_refsource_SECTRACK
installshield-oneclick-code-execution(41558)
vdb-entry
x_refsource_XF
28533
vdb-entry
x_refsource_BID
20080331 Macrovision InstallShield InstallScript One-Click Install Untrusted Library Loading Vulnerability
third-party-advisory
x_refsource_IDEFENSE
29549
third-party-advisory
x_refsource_SECUNIA
ADV-2008-1049
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now