The Macrovision InstallShield InstallScript One-Click Install (OCI) ActiveX control 12.0 before SP2 does not validate the DLL files that are named as parameters to the control, which allows remote attackers to download arbitrary library code onto a client machine.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2008-04-04T00:00:00
Updated: 2017-07-28T12:57:01
Reserved: 2007-10-23T00:00:00
Link: CVE-2007-5661
JSON object: View
NVD Information
Status : Modified
Published: 2008-04-04T00:44:00.000
Modified: 2017-07-29T01:33:47.927
Link: CVE-2007-5661
JSON object: View
Redhat Information
No data.
CWE