This script is Copyright (C) 2012-2013 Tenable Network Security, Inc.
The remote Windows host contains a web browser plugin that is affected
by multiple vulnerabilities.
The remote Windows host contains a version of Adobe's Shockwave Player
that is equal to or earlier than 18.104.22.1687 and is, therefore,
potentially affected by the following vulnerabilities :
- Several unspecified errors exist that can lead to
buffer overflow vulnerabilities and possible code
execution. (CVE-2012-4172, CVE-2012-4173, CVE-2012-4174,
- An array out-of-bounds error exists that can lead to
code execution. (CVE-2012-4176)
A remote attacker could exploit these issues by tricking a user into
viewing a malicious Shockwave file, resulting in arbitrary code
See also :
Upgrade to Adobe Shockwave Player 22.214.171.1248 or later.
Risk factor :
High / CVSS Base Score : 9.3
CVSS Temporal Score : 6.9
Public Exploit Available : false
Nessus Plugin ID: 62702 ()
Get Nessus Professional to scan unlimited IPs, run compliance checks & moreBuy Nessus Professional Now