|
|
Vulnerability Assessment & Network Security Forums |
|||||||||
|
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Windows >> Adobe Download Manager Detection Vulnerability Assessment Details
|
Adobe Download Manager Detection |
||
|
Checks for Adobe Download Manager version < 2.2 Detailed Explanation for this Vulnerability Assessment Summary : The remote Windows host has an application that is prone to a buffer overflow attack. Description : There is a version Adobe Download Manager installed on the remote Windows host that is vulnerable to a remote buffer overflow attack because the application fails to perform boundary checks while processing AOM files. In order to trigger this issue, a possible hacker needs to entice a user to visit a website hosting the malicious AOM file or send the AOM file as an email attachment and have the user click on it. Successful exploitation of this issue might result in arbitrary code execution. See also : http://research.eeye.com/html/advisories/published/AD20061205.html http://archives.neohapsis.com/archives/fulldisclosure/2006-12/0092.html http://www.adobe.com/support/security/bulletins/apsb06-19.html Solution : Either uninstall the application or upgrade to Adobe Download Manager version 2.2 or later. Network Security Threat Level: Medium / CVSS Base Score : 5.6 (AV:R/AC:H/Au:NR/C:P/I:P/A:P/B:N) Networks Security ID: 21453 Vulnerability Assessment Copyright: This script is Copyright (C) 2006 Tenable Network Security |
||
|
Networking, Telecom Tools |
|
||
|
No Discussions have been posted on this vulnerability. |