Lucene search

K
nvd[email protected]NVD:CVE-2007-6148
HistoryFeb 13, 2008 - 9:00 p.m.

CVE-2007-6148

2008-02-1321:00:00
CWE-399
web.nvd.nist.gov
4

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.235

Percentile

96.6%

Use-after-free vulnerability in the Edge server in Adobe Flash Media Server 2 before 2.0.5, and Connect Enterprise Server 6 before SP3, allows remote attackers to execute arbitrary code via an unspecified sequence of Real Time Message Protocol (RTMP) requests.

Affected configurations

Nvd
Node
adobeconnect_enterprise_serverRange6sp2
OR
adobeflash_media_server_2Range2.0.4
VendorProductVersionCPE
adobeconnect_enterprise_server*cpe:2.3:a:adobe:connect_enterprise_server:*:sp2:*:*:*:*:*:*
adobeflash_media_server_2*cpe:2.3:a:adobe:flash_media_server_2:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.235

Percentile

96.6%