Summary
This host is installed with Adobe Flash Player and is prone to multiple vulnerabilities.
Impact
Successful exploitation will allow remote attackers to execute arbitrary code or cause denial-of-service condition.
Impact Level: System/Application
Solution
Update to version 10.3.183.67 or 11.6.602.171,
For updates refer to http://www.adobe.com/products/flash.html
Insight
Multiple flaws due to,
- A flaw in the ExternalInterface ActionScript feature.
- Firefox sandbox does not restrict privileges.
- Buffer overflow in the Flash Player broker service.
Affected
Adobe Flash Player 10.3.183.61 and earlier, and 11.x to 11.6.602.167 on Mac OS X
References
Severity
Classification
-
CVE CVE-2013-0504, CVE-2013-0643, CVE-2013-0648 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities
- Adobe AIR Multiple Vulnerabilities(APSB14-24)-(Windows)
- Adobe AIR Multiple Vulnerabilities-01 Dec13 (Windows)
- Adobe Acrobat Multiple Unspecified Vulnerabilities -01 Feb13 (Mac OS X)
- Adobe Acrobat Multiple Unspecified Vulnerabilities - Mac OS X
- Adobe Acrobat Sandbox Bypass Vulnerability - Aug14 (Windows)