CVE-2005-3901

high

Description

Macromedia Flash Communication Server MX 1.0 and 1.5 does not sufficiently validate certain RTMP data, which allows attackers to cause a denial of service (instability or crash), as demonstrated using an alpha release build of Flash Player 8.5 (build 133).

References

http://www.securityfocus.com/bid/15437

http://www.osvdb.org/20869

http://www.macromedia.com/devnet/security/security_zone/mpsb05-09.html

http://securitytracker.com/id?1015219

http://secunia.com/advisories/17612

Details

Source: Mitre, NVD

Published: 2005-11-29

Updated: 2008-09-05

Risk Information

CVSS v2

Base Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

Severity: High

CVSS v3

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Severity: High