Korean
<< Back
VID 28265
Severity 40
Port 139,445
Protocol TCP
Class SMB
Detailed Description The Macromedia Flash Player 6 ActiveX control that comes bundled with Windows XP is installed on the remote host. This version has multiple memory corruption vulnerabilities.

By tricking a user into viewing a specially crafted web page, a remote attacker may be able to exploit these issues to execute arbitrary code on the affected host subject to the user's privileges.

* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of these condition will result in the check not being performed and a False Negative for all vulnerable hosts.

* References:
http://www.microsoft.com/technet/security/advisory/979267.mspx

* Platforms Affected:
FlashPlayer 6 on Microsoft Windows XP SP2 and SP3
Recommendation Upgrade to the latest version of Adobe Flash Player available from the Adobe Web site at http://get.adobe.com/kr/flashplayer/
Related URL (CVE)
Related URL 37753 (SecurityFocus)
Related URL (ISS)