Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

HTTP:STC:SWF:PHPEXEC

Severity

Low

Recommended

No

Category

HTTP

Keywords

Macromedia Flash ActiveX Invalid src Param

Release Date

2003/04/22

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

HTTP: Macromedia Flash ActiveX Invalid src Param


This signature detects attempts to download a Web page containing code that executes a malicious Macromedia Flash document. Attackers can send a maliciously crafted Flash document and manipulate an ActiveX control to execute arbitrary shellcode on the host.

Extended Description

Macromedia produces an ActiveX plugin version of the Flash Player, designed to work with Microsoft Internet Explorer. A vulnerability has been reported in some versions of this component. A buffer overflow exists in the parameter handling of this component. If an oversized parameter is including in the URI passed to the ActiveX component, process memory is corrupted. Exploitation of this vulnerability may result in arbitrary code execution when a malicious web page is viewed. It may be possible to exploit this vulnerability through HTML formatted email, this has not however been confirmed.

Affected Products

  • Macromedia Flash 6.0.0

References

  • BugTraq: 4664
  • CVE: CVE-2002-0605
  • URL: http://research.eeye.com/html/advisories/published/AD20020502.html

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out