Adobe Connect Enterprise Server vulnerabilities

4 known vulnerabilities affecting adobe/connect_enterprise_server.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2007-6431CRITICALCVSS 10.0≤ 62008-02-13
CVE-2007-6431 [CRITICAL] CVE-2007-6431: Unspecified vulnerability in Adobe Flash Media Server 2 before 2.0.5, and Connect Enterprise Server Unspecified vulnerability in Adobe Flash Media Server 2 before 2.0.5, and Connect Enterprise Server 6 before SP3, allows remote attackers to "take control of the affected system" via unspecified vectors, a different issue than CVE-2007-6148 and CVE-2007-6149.
nvd
CVE-2007-6149CRITICALCVSS 10.0≤ 62008-02-13
CVE-2007-6149 [CRITICAL] CWE-189 CVE-2007-6149: Multiple integer overflows in the Edge server in Adobe Flash Media Server 2 before 2.0.5, and Connec Multiple integer overflows in the Edge server in Adobe Flash Media Server 2 before 2.0.5, and Connect Enterprise Server 6 before SP3, allow remote attackers to execute arbitrary code via a Real Time Message Protocol (RTMP) message with a crafted integer field that is used for allocation.
nvd
CVE-2007-6148CRITICALCVSS 10.0≤ 62008-02-13
CVE-2007-6148 [CRITICAL] CWE-399 CVE-2007-6148: Use-after-free vulnerability in the Edge server in Adobe Flash Media Server 2 before 2.0.5, and Conn Use-after-free vulnerability in the Edge server in Adobe Flash Media Server 2 before 2.0.5, and Connect Enterprise Server 6 before SP3, allows remote attackers to execute arbitrary code via an unspecified sequence of Real Time Message Protocol (RTMP) requests.
nvd
CVE-2007-4651MEDIUMCVSS 5.0v62007-09-12
CVE-2007-4651 [MEDIUM] CWE-264 CVE-2007-4651: Unspecified vulnerability in Adobe Connect Enterprise Server 6 allows remote attackers to read certa Unspecified vulnerability in Adobe Connect Enterprise Server 6 allows remote attackers to read certain pages that are restricted to the administrator via unknown vectors.
nvd
Adobe Connect Enterprise Server vulnerabilities | cvebase