vendor:
InstallShield Update Service
by:
MC
7,5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: InstallShield Update Service
Affected Version From: 6.0.100.54472
Affected Version To: 6.0.100.54472
Patch Exists: NO
Related CWE: CVE-2007-5660
CPE: a:macrovision:installshield_update_service
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP0/SP1 Pro English, Windows 2000 Pro English All
2007
Macrovision InstallShield Update Service Buffer Overflow
This module exploits a stack buffer overflow in Macrovision InstallShield Update Service(Isusweb.dll 6.0.100.54472). By passing an overly long ProductCode string to the DownloadAndExecute method, an attacker may be able to execute arbitrary code.
Mitigation:
No known mitigation or remediation for this vulnerability