The Macrovision InstallShield InstallScript One-Click Install (OCI) ActiveX control 12.0 before SP2 does not validate the DLL files that are named as parameters to the control, which allows remote attackers to download arbitrary library code onto a client machine.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2007-5633 | The Macrovision InstallShield InstallScript One-Click Install (OCI) ActiveX control 12.0 before SP2 does not validate the DLL files that are named as parameters to the control, which allows remote attackers to download arbitrary library code onto a client machine. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 01 Aug 2025 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Revenera
Revenera installshield |
|
| CPEs | cpe:2.3:a:revenera:installshield:*:-:*:*:premier:*:*:* cpe:2.3:a:revenera:installshield:*:-:*:*:professional:*:*:* cpe:2.3:a:revenera:installshield:12:-:*:*:premier:*:*:* cpe:2.3:a:revenera:installshield:12:-:*:*:professional:*:*:* cpe:2.3:a:revenera:installshield:12:sp1:*:*:premier:*:*:* cpe:2.3:a:revenera:installshield:12:sp1:*:*:professional:*:*:* |
|
| Vendors & Products |
Macrovision
Macrovision installshield |
Revenera
Revenera installshield |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T15:39:13.547Z
Reserved: 2007-10-23T00:00:00
Link: CVE-2007-5661
No data.
Status : Analyzed
Published: 2008-04-04T00:44:00.000
Modified: 2025-08-01T02:04:24.627
Link: CVE-2007-5661
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD