PT-1997-1250 · Macromedia · Macromedia Shockwave
Published
1997-03-14
·
Updated
2017-12-19
·
CVE-1999-1525
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Macromedia Shockwave versions prior to 6.0
Description
The issue allows a malicious webmaster to potentially read a user's mailbox and access internal web servers by exploiting the GetNextText command in a Shockwave movie.
Recommendations
For Macromedia Shockwave versions prior to 6.0, update to version 6.0 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Macromedia Shockwave