5
CVSSv2

CVE-2003-1017

Published: 05/01/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Macromedia Flash Player prior to 7,0,19,0 stores a Flash data file in a predictable location that is accessible to web browsers such as Internet Explorer and Opera, which allows remote malicious users to read restricted files via vulnerabilities in web browsers whose exploits rely on predictable names.

Vulnerable Product Search on Vulmon Subscribe to Product

macromedia flash player 5.0_r50

macromedia flash player 6.0

macromedia flash player 4.0_r12

macromedia flash player 5.0

macromedia flash player 6.0.79.0

macromedia director 5.0

macromedia flash player 6.0.47.0

macromedia flash player 6.0.65.0

macromedia flash player 6.0.29.0

macromedia flash player 6.0.40.0

Exploits

source: wwwsecurityfocuscom/bid/8900/info Macromedia Flash Player is reported to store Flash cookies (sol files) in a predictable location on client systems Other attacks are possible given the ability to store content on a system in a predictable location, such as referencing the content via a file:// URI This is compounded by the fac ...