PT-2008-1538 · Adobe · Flash Media Server+1
Publicado
2008-02-13
·
Atualizado
2011-03-08
·
CVE-2007-6148
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Adobe Flash Media Server versions prior to 2.0.5
Adobe Connect Enterprise Server versions prior to 6 SP3
Description
A use-after-free issue in the Edge server of Adobe Flash Media Server and Adobe Connect Enterprise Server allows remote attackers to execute arbitrary code via a specific sequence of Real Time Message Protocol (RTMP) requests.
Recommendations
For Adobe Flash Media Server versions prior to 2.0.5, update to version 2.0.5 or later.
For Adobe Connect Enterprise Server versions prior to 6 SP3, update to version 6 SP3 or later.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Connect Enterprise Server
Flash Media Server