Macromedia Flash < 2.0 Malformed RTMP Data DoS

high Nessus Network Monitor Plugin ID 3295

Synopsis

The remote host is vulnerable to a Denial of Service (DoS) attack.

Description

The remote host is running Macromedia Flash server, a multimedia server. This version of Flash is reported to be vulnerable to a flaw; however, the details of the flaw have not been released. It is rumoured that the flaw would lead to Denial of Service (DoS) attack.

Solution

Upgrade to version 2.0 or higher.

Plugin Details

Severity: High

ID: 3295

Family: Web Servers

Published: 11/16/2005

Updated: 3/6/2019

Risk Information

VPR

Risk Factor: Low

Score: 3.4

CVSS v2

Risk Factor: High

Base Score: 7.8

Temporal Score: 6.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

CVSS v3

Risk Factor: High

Base Score: 7.5

Temporal Score: 7

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:macromedia:flash_communication_server

Reference Information

CVE: CVE-2005-3901

BID: 15437