CVE-2003-1017
Macromedia Flash Player before 7,0,19,0 stores a Flash data file in a predictable location that is accessible to web browsers such as Internet Explorer and Opera, which allows remote attackers to read restricted files via vulnerabilities in web browsers…
Does this matter?
Lower severity and a low EPSS score (3.00%). Track it; it rarely justifies an emergency change on its own.
Description
Macromedia Flash Player before 7,0,19,0 stores a Flash data file in a predictable location that is accessible to web browsers such as Internet Explorer and Opera, which allows remote attackers to read restricted files via vulnerabilities in web browsers whose exploits rely on predictable names.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 3.00% probability · 87th percentile
- CISA KEV
- Not listed
- Affected
- macromedia/director · macromedia/flash player
- Source
- cve@mitre.org
References
- http://www.macromedia.com/devnet/security/security_zone/mpsb03-08.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/8900Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/14013
- http://www.macromedia.com/devnet/security/security_zone/mpsb03-08.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/8900Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/14013
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.