Vulnerability Note VU#524681
Macrovision FLEXnet Connect Software Manager DWUpdateService ActiveX control contains dangerous methods
Overview
The Macrovision FLEXnet Connect Software Manager DWUpdateService ActiveX control fails to restrict access to its methods, which can allow a remote, unauthenticated attacker to execute arbitrary commands on a vulnerable system.
Description
Macrovision FLEXnet Connect is a software package that allows vendors to provide updates to applications. FLEXnet Connect-enabled software has the ability to
Note that this control may be provided by installing the FLEXnet Connect SDK, installing other InstallShield software, or also by running FLEXnet Connect-enabled Windows software. |
Impact
By convincing a user to view a specially crafted HTML document (e.g., a web page or an HTML email message or attachment), an attacker may be able to execute arbitrary commands with the privileges of the user. |
Solution
Apply an update |
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{551E5190-19C7-4626-9D54-FB20355E6467}] "Compatibility Flags"=dword:00000400 Disabling ActiveX controls in the Internet Zone (or any zone used by an attacker) appears to prevent exploitation of this and other ActiveX vulnerabilities. Instructions for disabling ActiveX in the Internet Zone can be found in the "Securing Your Web Browser" document. |
Systems Affected (Learn More)
| Vendor | Status | Date Notified | Date Updated |
|---|---|---|---|
| Earthlink | Affected | - | 10 Oct 2008 |
| Macrovision | Affected | 06 Mar 2007 | 31 May 2007 |
| Research in Motion (RIM) | Affected | 10 Oct 2008 | 26 Nov 2008 |
CVSS Metrics (Learn More)
| Group | Score | Vector |
|---|---|---|
| Base | N/A | N/A |
| Temporal | N/A | N/A |
| Environmental | N/A | N/A |
References
- http://www.cert.org/tech_tips/securing_browser/#Internet_Explorer
- http://support.installshield.com/kb/view.asp?articleid=Q113020
- http://www.macrovision.com/products/flexnet_publisher/flexnet_connect/
- http://support.microsoft.com/kb/240797
- http://secunia.com/advisories/25501/
- http://blackberry.com/btsc/KB16469
Credit
This vulnerability was reported by Will Dormann of CERT/CC.
This document was written by Will Dormann.
Other Information
- CVE IDs: CVE-2007-0328
- Date Public: 31 May 2007
- Date First Published: 31 May 2007
- Date Last Updated: 13 Apr 2009
- Severity Metric: 4.69
- Document Revision: 15
Feedback
If you have feedback, comments, or additional information about this vulnerability, please send us email.