Macromedia Flash Plugin prior to 6,0,47,0 allows remote malicious users to bypass the same-domain restriction and read arbitrary files via (1) an HTTP redirect, (2) a "file://" base in a web document, or (3) a relative URL from a web archive (mht file).
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
macromedia flash player 6.0.40.0 |
||
macromedia shockwave 8.0 |
||
macromedia flash player 6.0 |
||
macromedia flash player 6.0.29.0 |