Summary
RealNetworks Helix Server is prone to multiple remote vulnerabilities.
Attackers can exploit theses issues to execute arbitrary code within the context of the affected application, cause denial-of service conditions, retrieve potentially sensitive information, execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, and steal cookie-based authentication credentials.
RealNetworks Helix Server 14.2.0.212 is vulnerable other versions may
also be affected.
Solution
Updates are available. Please see the references for more information.
References
Severity
Classification
-
CVE CVE-2012-0942, CVE-2012-1923, CVE-2012-1984, CVE-2012-1985, CVE-2012-2267, CVE-2012-2268 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Adobe Acrobat Multiple Vulnerabilities - 01 May14 (Windows)
- Adobe AIR Multiple Vulnerabilities(APSB14-24)-(Windows)
- Active Perl Locale::Maketext Module Multiple Code Injection Vulnerabilities (Windows)
- Adobe Acrobat Multiple Vulnerabilities-01 Dec14 (Mac OS X)
- Adobe Captivate Insecure Library Loading Vulnerability