Adobe Download Manager < 2.2 AOM File Handling Section Name Overflow
Medium Nessus Plugin ID 23779
SynopsisThe remote Windows host has an application that is prone to a buffer overflow attack.
DescriptionThere is a version Adobe Download Manager installed on the remote Windows host that is vulnerable to a remote buffer overflow attack because the application fails to perform boundary checks while processing AOM files. In order to trigger this issue, an attacker needs to entice a user to visit a website hosting the malicious AOM file or send the AOM file as an email attachment and have the user click on it. Successful exploitation of this issue might result in arbitrary code execution.
SolutionEither uninstall the application or upgrade to Adobe Download Manager version 2.2 or later.