Korean
<< Back
VID 50002
Severity 40
Port 139,445
Protocol TCP
Class SMB
Detailed Description According to its version, the instance of Flash Player installed on the remote Windows host is earlier than 10.3.181.26. This version of Flash Player has a critical vulnerability. By tricking a user on the affected system into opening a specially crafted document with Flash content, an attacker could leverage the vulnerability to execute arbitrary code remotely on the system subject to the user's privileges.

* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of these condition will result in the check not being performed and a False Negative for all vulnerable hosts.

* References:
http://www.adobe.com/support/security/bulletins/apsb11-18.html

* Platforms Affected:
Adobe Flash Player prior to 10.3.181.26
Apple Mac OS X Any version
Linux Any version
Microsoft Windows Any version
Recommendation Upgrade to the latest version of Adobe Flash Player (10.3.181.26 or later), available from the Adobe Web site at http://get.adobe.com/kr/air/
Related URL CVE-2011-2110 (CVE)
Related URL 48268 (SecurityFocus)
Related URL (ISS)