Vulnerabilities (CVE)

Filtered by vendor Acresso Subscribe
Filtered by product Intallshield Update Agent
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-1093 1 Acresso 2 Flexnet Connect, Intallshield Update Agent 2023-12-10 9.3 HIGH N/A
Acresso InstallShield Update Agent does not properly verify the authenticity of Rule Scripts obtained from GetRules.asp web pages on FLEXnet Connect servers, which allows remote man-in-the-middle attackers to execute arbitrary VBScript code via Trojan horse Rules.