RSS   Vulnerabilities for 'Update service'   RSS

2008-01-04
 
CVE-2007-6654

 

 
Buffer overflow in a certain ActiveX control in Macrovision InstallShield Update Service Web Agent 5.1.100.47363 allows remote attackers to execute arbitrary code via a long string in the ProductCode argument (second argument) to the DownloadAndExecute method, a different vulnerability than CVE-2007-0321, CVE-2007-2419, and CVE-2007-5660.

 
2007-11-02
 
CVE-2007-5660

CWE-noinfo
 

 
Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXnet Connect and InstallShield 2008 allows remote attackers to execute arbitrary code via an unspecified "unsafe method," possibly involving a buffer overflow.

 
2007-06-06
 
CVE-2007-2419

CWE-Other
 

 
Multiple buffer overflows in an ActiveX control (boisweb.dll) in Macrovision FLEXnet Connect 6.0 and Update Service 3.x to 5.x allow remote attackers to execute arbitrary code via the (1) the second parameter to the DownloadAndExecute method and (2) third parameter to the AddFileEx method, a different vulnerability than CVE-2007-0328.

 
2007-05-31
 
CVE-2007-0328

CWE-DesignError
 

 
The DWUpdateService ActiveX control in the agent (agent.exe) in Macrovision FLEXnet Connect 6.0 and Update Service 3.x to 5.x allows remote attackers to execute arbitrary commands via (1) the Execute method, and obtain the exit status using (2) the GetExitCode method.

 

 >>> Vendor: Macrovision 7 Products
Safedisc
Installfromtheweb
Flexnet connect
Update service
Installanywhere
Installshield 2008
Installshield


Copyright 2024, cxsecurity.com

 

Back to Top