Oval Definition:oval:org.mitre.oval:def:15913
Revision Date:2013-02-04Version:3
Title:Vulnerability in parsing of a cross-domain policy file in Adobe Flash Player version less than 9.0.289.0 and 10.x less than 10.1.102.64
Description:Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris, and 10.1.95.1 on Android, does not properly handle unspecified encodings during the parsing of a cross-domain policy file, which allows remote web servers to bypass intended access restrictions via unknown vectors.
Family:macosClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-3636
Platform(s):Apple Mac OS X
Product(s):Adobe Flash Player
Definition Synopsis
  • Adobe Flash Player is Installed
  • AND Flash version is before 9.0.289.0 or 10.x before 10.1.102.64
  • Version of Adobe Flash Player is less than 9.0.289.0
  • OR Adobe Flash Player 10.x before 10.1.102.64 installed
  • Adobe Flash Player 10 is Installed
  • AND Version of Adobe Flash Player is less than 10.1.102.64
  • BACK