메뉴 건너뛰기

GREATUSER

cve

CVE-2018-6014

관리자 2018.01.25 04:00 조회 수 : 52

Subsonic v6.1.3 has an insecure allow-access-from domain="*" Flash cross-domain policy that allows an attacker to retrieve sensitive user information via a read request. To exploit this issue, an attacker must convince the user to visit a web site loaded with a SWF file created specifically to steal user data.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-6014
번호 제목 글쓴이 날짜 조회 수
407 CVE-2017-14082 관리자 2018.01.25 8
406 CVE-2017-12098 관리자 2018.01.25 8
405 CVE-2017-6142 관리자 2018.01.25 8
404 CVE-2018-5786 관리자 2018.01.25 8
403 CVE-2017-16643 관리자 2017.11.09 8
402 CVE-2017-16644 관리자 2017.11.09 8
401 CVE-2017-16649 관리자 2017.11.09 8
400 CVE-2017-2884 관리자 2017.11.09 8
399 CVE-2017-14122 관리자 2017.09.04 8
398 CVE-2017-14119 관리자 2017.09.04 8
397 CVE-2017-14117 관리자 2017.09.04 8
396 CVE-2017-10793 관리자 2017.09.04 8
395 CVE-2017-14098 관리자 2017.09.04 8
394 CVE-2017-14099 관리자 2017.09.04 8
393 CVE-2017-12817 관리자 2017.08.27 8
위로