T-015: InstallShield / Macrovision / Acresso FLEXnet Connect Vulnerabilities


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) T-015: InstallShield / Macrovision / Acresso FLEXnet Connect Vulnerabilities
# 1  
Old 11-13-2008
T-015: InstallShield / Macrovision / Acresso FLEXnet Connect Vulnerabilities

Acresso FLEXnet Connect executes scripts that are insecurely retrieved from a remote web server, which can allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system. The risk is MEDIUM. By modifying the rule script that is sent to a FLEXnet Connect client, a remote unauthenticated attacker may be able to execute arbitrary code on a vulnerable system.


More...
Login or Register to Ask a Question

Previous Thread | Next Thread

2 More Discussions You Might Find Interesting

1. HP-UX

installshield....

hi all is it possible to automate installaion process of any software on unix? for eg. we have our front end on windows and we have installshield package that installs everything creating folder structure to creating database. now we are planning to automate our backend installation like... (0 Replies)
Discussion started by: zedex
0 Replies

2. Solaris

some questions on 310-015

hi can any1 pls ans these questions 22. Which two statements about the functionality of the syslogd daemon are true? (Choose two) A. Error messages can only be logged locally in a system log. B. The kernel, daemons, and syslogd each write directly to a system log. C. Syslogd can write... (1 Reply)
Discussion started by: azeem_3001
1 Replies
Login or Register to Ask a Question
SMPPPD-C.CONF(5)						      SMPPPD							  SMPPPD-C.CONF(5)

NAME
smpppd-c.conf - configuration file for smpppd frontends DESCRIPTION
When frontends of smpppd like cinternet , qinternet or kinternet want to connect the smpppd they may read the file /etc/smpppd-c.conf. The configuration file /etc/smpppd-c.conf has a simple file format with a key = value pair in each line. OPTIONS
sites = <list of sites> Tell the frontends where to find the smpppd. Frontends will try to connect to the smpppd in the order defined here. Possible sites are: local Connect to locally running smpppd (via socket in the local namespace). gateway Connect to smpppd running on the gateway. config-file Connect to smpppd as specified in this file. slp Connect to smpppd as retrived from the slp daemon (service location protocol). server = <server> Specifies the host on which the smpppd is running. port = <port> Specifies the port number of the smpppd. password = <password> The password to use for authentication at the smpppd, UTF-8 encoded for those who really care. SEE ALSO
kinternet, qinternet, cinternet(1), smpppd(8). AUTHOR
Arvin Schnell <arvin@suse.de> SuSE January 2004 SMPPPD-C.CONF(5)