Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Gain root remotely >> Flash Player APSB06-03


Vulnerability Assessment Details

Flash Player APSB06-03

Vulnerability Assessment Summary
Checks version of Flash Player

Detailed Explanation for this Vulnerability Assessment

Summary :

The remote Windows host contains a browser test that is affected by
several critical flaws.

Description :

According to its version number, the instance of Flash Player on the
remote Windows host contains multiple critical and as-yet unspecified
vulnerabilities that could permit a possible hacker to take control of the
affected host. To exploit these issues, a user must load a malicious
SWF file in Flash Player.

See also :

http://www.microsoft.com/technet/security/Bulletin/MS06-020.mspx
http://www.microsoft.com/technet/security/advisory/916208.mspx
http://www.macromedia.com/devnet/security/security_zone/apsb06-03.html

Solution :

Upgrade to Flash Player version 7.0.63.0 / 8.0.24.0 or later.

Network Security Threat Level:

Medium / CVSS Base Score : 5.6
(AV:R/AC:H/Au:NR/C:P/I:P/A:P/B:N)

Networks Security ID: 17106

Vulnerability Assessment Copyright: This script is Copyright (C) 2006 Tenable Network Security

Cables, Connectors

Polycom Soundpoint IP-321 VoIP SIP Phone 2200-12360-001 IP321
$45.0
Polycom Soundpoint IP-321 VoIP SIP Phone 2200-12360-001 IP321 pictureCisco LINKSYS SPA8000 VOIP 8-Port IP Telephony Gateway with Power Cord
$91.2
Cisco LINKSYS SPA8000 VOIP 8-Port IP Telephony Gateway with Power Cord pictureSnom-300 VOIP Multi Line Telephone Phone 2 Line LED Business Speakerphone
$49.0
Snom-300 VOIP Multi Line Telephone Phone 2 Line LED Business Speakerphone pictureIwatsu IX-12IPKTD-E (BLK) 24 Button Display IP VoIP Telephone ADIX IX-24IPKTD-E
$119.0
Iwatsu IX-12IPKTD-E (BLK) 24 Button Display IP VoIP Telephone ADIX IX-24IPKTD-E picture


Discussions

No Discussions have been posted on this vulnerability.