Korean
<< Back
VID 50006
Severity 40
Port 139,445
Protocol TCP
Class SMB
Detailed Description The remote Windows host contains a version of Adobe's Shockwave Player that is earlier than 11.6.1.629. As such, it is potentially affected by multiple memory corruption vulnerabilities.

A remote attacker could exploit these issues by tricking a user into viewing a malicious Shockwave file, resulting in arbitrary code execution.

* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of this condition will result in the check not being performed and a False Negative for all vulnerable hosts.

* References:
http://www.adobe.com/support/security/bulletins/apsb11-19.html

* Platforms Affected:
Shockwave Player versions prior to 11.6.1.629
Microsoft Windows Any version
Recommendation Upgrade to the latest version Shockwave Player (11.6.1.629 or later), available from the Adobe Web site at http://get.adobe.com/shockwave/
Related URL CVE-2010-4308,CVE-2010-4309,CVE-2011-2419,CVE-2011-2420,CVE-2011-2421,CVE-2011-2422,CVE-2011-2423 (CVE)
Related URL 49102 (SecurityFocus)
Related URL (ISS)