CVE-2007-6654 Information

Description

Buffer overflow in a certain ActiveX control in Macrovision InstallShield Update Service Web Agent 5.1.100.47363 allows remote attackers to execute arbitrary code via a long string in the ProductCode argument (second argument) to the DownloadAndExecute method a different vulnerability than CVE-2007-0321 CVE-2007-2419 and CVE-2007-5660.

Reference

http://lists.grok.org.uk/pipermail/full-disclosure/2007-December/059288.html http://osvdb.org/39980 https://exchange.xforce.ibmcloud.com/vulnerabilities/39204 https://www.exploit-db.com/exploits/4819

Share on: