vendor:
FlexNet DownloadManager
by:
e.b.
9.3
CVSS
HIGH
Insecure Methods Exploit
20
CWE
Product Name: FlexNet DownloadManager
Affected Version From: 6.1.100.61372
Affected Version To: 6.1.100.61372
Patch Exists: YES
Related CWE: N/A
CPE: a:macrovision:flexnet_download_manager
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP2
2008
Macrovision FlexNet DownloadManager Insecure Methods Exploit
This exploit uses the insecure methods of Macrovision FlexNet DownloadManager to download and execute a malicious file from a remote server. The malicious file is downloaded to the startup folder of the system and is executed when the system is restarted.
Mitigation:
The user should update the Macrovision FlexNet DownloadManager to the latest version.