CVE-2008-4587

Insecure method vulnerability in the MSVNClientDownloadManager61Lib.DownloadManager.1 ActiveX control (ISDM.exe 6.1.100.61372) in Macrovision FLEXnet Connect 6.1 allows remote attackers to force the download and execution of arbitrary files via the AddFile and RunScheduledJobs methods. NOTE: this could be leveraged for code execution by uploading executable files to Startup folders.
Configurations

Configuration 1 (hide)

cpe:2.3:a:acresso:flexnet_connect:6.1:*:*:*:*:*:*:*

History

21 Nov 2024, 00:52

Type Values Removed Values Added
References () http://secunia.com/advisories/28496 - Vendor Advisory () http://secunia.com/advisories/28496 - Vendor Advisory
References () http://securityreason.com/securityalert/4428 - () http://securityreason.com/securityalert/4428 -
References () http://www.securityfocus.com/bid/27279 - () http://www.securityfocus.com/bid/27279 -
References () http://www.vupen.com/english/advisories/2008/0145 - () http://www.vupen.com/english/advisories/2008/0145 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/39653 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/39653 -
References () https://www.exploit-db.com/exploits/4909 - () https://www.exploit-db.com/exploits/4909 -

Information

Published : 2008-10-15 22:45

Updated : 2024-11-21 00:52


NVD link : CVE-2008-4587

Mitre link : CVE-2008-4587

CVE.ORG link : CVE-2008-4587


JSON object : View

Products Affected

acresso

  • flexnet_connect