Vulnerabilities > Macrovision > Flexnet Connect > 6.0

DATE CVE VULNERABILITY TITLE RISK
2008-09-18 CVE-2008-2470 Buffer Overflow vulnerability in Macrovision Flexnet Connect 6.0
The InstallShield Update Service Agent ActiveX control in isusweb.dll allows remote attackers to cause a denial of service (memory corruption and browser crash) and possibly execute arbitrary code via a call to ExecuteRemote with a URL that results in a 404 error response.
network
macrovision
critical
9.3
2007-06-06 CVE-2007-2419 Unspecified vulnerability in Macrovision Flexnet Connect and Update Service
Multiple buffer overflows in an ActiveX control (boisweb.dll) in Macrovision FLEXnet Connect 6.0 and Update Service 3.x to 5.x allow remote attackers to execute arbitrary code via the (1) the second parameter to the DownloadAndExecute method and (2) third parameter to the AddFileEx method, a different vulnerability than CVE-2007-0328.
network
low complexity
macrovision
critical
10.0
2007-06-01 CVE-2007-0328 Unspecified vulnerability in Macrovision Flexnet Connect and Update Service
The DWUpdateService ActiveX control in the agent (agent.exe) in Macrovision FLEXnet Connect 6.0 and Update Service 3.x to 5.x allows remote attackers to execute arbitrary commands via (1) the Execute method, and obtain the exit status using (2) the GetExitCode method.
network
macrovision
critical
9.3