CVE-2010-3189: Code Injection
Published Aug 31, 2010
·Updated
The extSetOwner function in the UfProxyBrowserCtrl ActiveX control (UfPBCtrl.dll) in Trend Micro Internet Security Pro 2010 allows remote attackers to execute arbitrary code via an invalid address that is dereferenced as a pointer.
Affected Software
1 affected component
trendmicro Internet Security=2010
Remediation
Event History
Aug 31, 2010
CVE Published
via MITRE·07:25 PM
Data Sourced
via MITRE·07:25 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-3189?
CVE-2010-3189 is considered critical due to its potential for remote code execution.
2
How can I fix CVE-2010-3189?
To fix CVE-2010-3189, ensure that you apply the latest security updates or patches provided by Trend Micro for Internet Security 2010.
3
What software is affected by CVE-2010-3189?
CVE-2010-3189 specifically affects Trend Micro Internet Security Pro 2010.
4
Can CVE-2010-3189 be exploited remotely?
Yes, CVE-2010-3189 can be exploited remotely by attackers to execute arbitrary code.
5
Is there a workaround for CVE-2010-3189?
There are no documented workarounds for CVE-2010-3189, so the best action is to apply the patch.