The CallCode ActiveX control in caller.dll 3.0 before 20070713, and 3.0 SP1 before 3.0.5.81, in CA (formerly Computer Associates) eTrust Intrusion Detection allows remote attackers to load arbitrary DLLs on a client system, and execute code from these DLLs, via unspecified "scriptable functions."
| Software | From | Fixed in |
|---|---|---|
| ca / etrust_intrusion_detection | 3.05.81 | 3.05.81.x |
| ca / etrust_intrusion_detection | 3.0-sp1 | 3.0-sp1.x |
| broadcom / etrust_intrusion_detection | 3.0 | 3.0.x |