First published: Wed May 09 2007(Updated: )
Buffer overflow in the IsOldAppInstalled function in the McSubMgr.McSubMgr Subscription Manager ActiveX control (MCSUBMGR.DLL) in McAfee SecurityCenter before 6.0.25 and 7.x before 7.2.147 allows remote attackers to execute arbitrary code via a crafted argument.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Security Center | =4.3 | |
McAfee Security Center | =6.0 | |
McAfee Security Center | =6.0.22 | |
McAfee Security Center | =7.0 | |
McAfee Security Center | =7.1 | |
McAfee Security Center | =7.2 | |
McAfee SecurityCenter Agent | =6.0 | |
McAfee VirusScan Plus | =10.0.27 | |
McAfee VirusScan Plus | =2004 | |
McAfee VirusScan Plus | =2005 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-2584 has been rated as critical due to its potential to allow remote code execution.
To fix CVE-2007-2584, update McAfee SecurityCenter and McAfee VirusScan to versions 6.0.25 or 7.2.147 or later.
CVE-2007-2584 affects various versions of McAfee SecurityCenter and McAfee VirusScan, specifically those prior to the patched versions.
Yes, CVE-2007-2584 can be exploited remotely through a crafted argument targeting the vulnerable ActiveX control.
CVE-2007-2584 facilitates arbitrary code execution attacks, allowing attackers to execute malicious code on the affected system.