Vulnerability Description
Flexera Macrovision InstallShield before 2008 sends a digital-signature password to an unintended application during certain signature operations involving .spc and .pvk files, which might allow local users to obtain sensitive information via unspecified vectors, related to an incorrect interaction between InstallShield and Signcode.exe.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Flexerasoftware | Installshield | <= 1.0 |
Related Weaknesses (CWE)
References
- http://kb.flexerasoftware.com/selfservice/microsites/search.do?cmd=displayKC&doc
- http://kb.flexerasoftware.com/selfservice/microsites/search.do?cmd=displayKC&doc
FAQ
What is CVE-2007-6744?
CVE-2007-6744 is a vulnerability with a CVSS score of 2.1 (LOW). Flexera Macrovision InstallShield before 2008 sends a digital-signature password to an unintended application during certain signature operations involving .spc and .pvk files, which might allow local...
How severe is CVE-2007-6744?
CVE-2007-6744 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-6744?
Check the references section above for vendor advisories and patch information. Affected products include: Flexerasoftware Installshield.