First published: Tue Aug 31 2010(Updated: )
The extSetOwner function in the UfProxyBrowserCtrl ActiveX control (UfPBCtrl.dll) in Trend Micro Internet Security Pro 2010 allows remote attackers to execute arbitrary code via an invalid address that is dereferenced as a pointer.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Trend Micro Internet Security 2023 | =2010 |
http://esupport.trendmicro.com/pages/Hot-Fix-UfPBCtrldll-is-vulnerable-to-remote-attackers.aspx
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-3189 is considered critical due to its potential for remote code execution.
To fix CVE-2010-3189, ensure that you apply the latest security updates or patches provided by Trend Micro for Internet Security 2010.
CVE-2010-3189 specifically affects Trend Micro Internet Security Pro 2010.
Yes, CVE-2010-3189 can be exploited remotely by attackers to execute arbitrary code.
There are no documented workarounds for CVE-2010-3189, so the best action is to apply the patch.