The Macrovision InstallShield InstallScript One-Click Install (OCI) ActiveX control 12.0 before SP2 does not validate the DLL files that are named as parameters to the control, which allows remote attackers to download arbitrary library code onto a client machine.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2008-04-04T00:00:00

Updated: 2024-08-07T15:39:13.547Z

Reserved: 2007-10-23T00:00:00

Link: CVE-2007-5661

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2008-04-04T00:44:00.000

Modified: 2024-11-21T00:38:25.070

Link: CVE-2007-5661

cve-icon Redhat

No data.