5
CVSSv2

CVE-2002-1467

Published: 22/04/2003 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Macromedia Flash Plugin prior to 6,0,47,0 allows remote malicious users to bypass the same-domain restriction and read arbitrary files via (1) an HTTP redirect, (2) a "file://" base in a web document, or (3) a relative URL from a web archive (mht file).

Vulnerable Product Search on Vulmon Subscribe to Product

macromedia flash player 6.0.40.0

macromedia shockwave 8.0

macromedia flash player 6.0

macromedia flash player 6.0.29.0

Vendor Advisories

Debian Bug report logs - #449110 CVE-2007-5275: possible vulnerability Package: flashplugin-nonfree; Maintainer for flashplugin-nonfree is Bart Martens <bartm@debianorg>; Source for flashplugin-nonfree is src:flashplugin-nonfree (PTS, buildd, popcon) Reported by: Steffen Joeris <steffenjoeris@skolelinuxde> Date: S ...