The Macrovision InstallShield InstallScript One-Click Install (OCI) ActiveX control 12.0 before SP2 does not validate the DLL files that are named as parameters to the control, which allows remote attackers to download arbitrary library code onto a client machine.
History

Fri, 01 Aug 2025 02:15:00 +0000

Type Values Removed Values Added
First Time appeared Revenera
Revenera installshield
CPEs cpe:2.3:a:macrovision:installshield:*:sp1:*:*:*:*:*:* cpe:2.3:a:revenera:installshield:*:-:*:*:premier:*:*:*
cpe:2.3:a:revenera:installshield:*:-:*:*:professional:*:*:*
cpe:2.3:a:revenera:installshield:12:-:*:*:premier:*:*:*
cpe:2.3:a:revenera:installshield:12:-:*:*:professional:*:*:*
cpe:2.3:a:revenera:installshield:12:sp1:*:*:premier:*:*:*
cpe:2.3:a:revenera:installshield:12:sp1:*:*:professional:*:*:*
Vendors & Products Macrovision
Macrovision installshield
Revenera
Revenera installshield

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2008-04-04T00:00:00

Updated: 2024-08-07T15:39:13.547Z

Reserved: 2007-10-23T00:00:00

Link: CVE-2007-5661

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2008-04-04T00:44:00.000

Modified: 2025-08-01T02:04:24.627

Link: CVE-2007-5661

cve-icon Redhat

No data.