Trend Micro Internet Security Pro 2010 "UfPBCtrl.dll" ActiveX Control Vulnerability
RISK: Medium Risk
A vulnerability has been identified in Trend Micro Internet Security Pro, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by an error in the "extSetOwner()" function within the "UfPBCtrl.dll" ActiveX control when processing user-supplied parameters, which could be exploited by remote attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.
Impact
- Remote Code Execution
System / Technologies affected
- Trend Micro Internet Security Pro 2010
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Apply hotfix :
http://solutionfile.trendmicro.com/solutionfile/EN-1056426/TISPro_1750_win_en_hfb1695.exe
Vulnerability Identifier
- No CVE information is available
Source
Related Link
Share with