RSS   Vulnerabilities for 'Installanywhere'   RSS

2007-04-19
 
CVE-2007-1009

CWE-Other
 

 
Macrovision InstallAnywhere Enterprise before 8.0.1 uses the InstallScript.iap_xml configuration file without integrity protection to verify authorization for installing an application, which allows local users to perform unauthorized installations by removing the (1) password or (2) serial number verification sections from this file.

 

 >>> Vendor: Macrovision 7 Products
Safedisc
Installfromtheweb
Flexnet connect
Update service
Installanywhere
Installshield 2008
Installshield


Copyright 2024, cxsecurity.com

 

Back to Top