RealOne Player Temporary File Default Browser Script Execution Vulnerability
BID:8839
Info
RealOne Player Temporary File Default Browser Script Execution Vulnerability
| Bugtraq ID: | 8839 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 15 2003 12:00AM |
| Updated: | Oct 15 2003 12:00AM |
| Credit: | Vulnerability disclosed by RealNetworks. |
| Vulnerable: |
RealNetworks RealOne Player Gold for Windows 6.0.10 .505 RealNetworks RealOne Player 6.0.11 .853 RealNetworks RealOne Player 6.0.11 .841 RealNetworks RealOne Player 6.0.11 .830 RealNetworks RealOne Player 6.0.11 .818 RealNetworks RealOne Player 2.0 RealNetworks RealOne Player RealNetworks RealOne Enterprise Desktop 6.0.11 .774 RealNetworks RealOne Desktop Manager |
| Not Vulnerable: | |
Discussion
RealOne Player Temporary File Default Browser Script Execution Vulnerability
It has been reported that RealOne Player is vulnerable to an issue in the handling of temporary files. Because of this, an attacker may be able to perform unauthorized actions in a user's web browser.
It has been reported that RealOne Player is vulnerable to an issue in the handling of temporary files. Because of this, an attacker may be able to perform unauthorized actions in a user's web browser.
Exploit / POC
RealOne Player Temporary File Default Browser Script Execution Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
RealOne Player Temporary File Default Browser Script Execution Vulnerability
Solution:
Real Networks has released patches to address this issue. Please see the Real Networks announcement for details on obtaining and applying updates for RealOne Enterprise Product.
Solution:
Real Networks has released patches to address this issue. Please see the Real Networks announcement for details on obtaining and applying updates for RealOne Enterprise Product.
References
RealOne Player Temporary File Default Browser Script Execution Vulnerability
References:
References: