Summary
This host is installed with Adobe Shockwave player and is prone to multiple vulnerabilities.
Impact
Successful exploitation will allow remote attackers to cause obtain sensitive information, remote code execution, and corrupt system memory.
Impact Level: System/Application
Solution
Upgrade to version 12.0.2.122 or later,
For updates refer to http://get.adobe.com/shockwave
Insight
Multiple flaws due to,
- Unknown errors in unspecified vectors.
- Buffer overflow via unspecified vectors.
- Does not prevent access to address information, which makes it easy to bypass the ASLR protection mechanism.
Affected
Adobe Shockwave Player Version 12.0.0.112 and prior on Windows
References
Severity
Classification
-
CVE CVE-2013-1383, CVE-2013-1384, CVE-2013-1385, CVE-2013-1386 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities
- Adobe Air and Flash Player Multiple Vulnerabilities August-2011 (Windows)
- 7T Interactive Graphical SCADA System Multiple Security Vulnerabilities
- Adobe Flash Player 'SWF' File Multiple Code Execution Vulnerability - Windows
- Adobe Acrobat Multiple Vulnerabilities - Windows
- Adobe AIR Multiple Vulnerabilities -01 April 13 (Windows)