CVE-1999-1525: Medium severity Macromedia Shockwave Flash plugin vulnerability
Macromedia Shockwave before 6.0 allows a malicious webmaster to read a user's mail box and possibly access internal web servers via the GetNextText command on a Shockwave movie.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Macromedia Shockwave Flashto a version that resolves this vulnerability.Fixed in 6.0
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1525?
CVE-1999-1525 has been rated as a high severity vulnerability due to its ability to potentially expose sensitive user information.
How do I fix CVE-1999-1525?
To fix CVE-1999-1525, upgrade to a version of Macromedia Shockwave that is greater than 6.0.
What systems are affected by CVE-1999-1525?
CVE-1999-1525 affects Macromedia Shockwave Flash plugin versions up to and including 6.0.
What can attackers do using CVE-1999-1525?
Attackers can exploit CVE-1999-1525 to read users' mailboxes and potentially access internal web servers.
Is CVE-1999-1525 still a concern today?
While CVE-1999-1525 is historical, if outdated software is still in use, it can still pose a threat.