{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"Contribute CS3 ;","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}},{"description":"Dreamweaver 8 ;","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}},{"description":"Dreamweaver CS3 ;","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}},{"description":"Contribute 4.","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}}],"affected_systems_content":null,"content":"## Description\n\nLes fichiers SWF cr\u00e9\u00e9s avec la commande Insert Flash Video, depuis une\napplication Adobe vuln\u00e9rable, permettent l'injection de code indirecte\nqui sera ex\u00e9cut\u00e9 dans le contexte du site visit\u00e9.\n\n## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[{"name":"CVE-2007-6244","url":"https://www.cve.org/CVERecord?id=CVE-2007-6244"},{"name":"CVE-2007-6637","url":"https://www.cve.org/CVERecord?id=CVE-2007-6637"}],"links":[{"title":"Bulletin de s\u00e9curit\u00e9 Adobe apsb08-01 du 16 janvier 2008 :","url":"http://www.adobe.com/support/security/bulletins/apsb08-01.html"}],"reference":"CERTA-2008-AVI-034","revisions":[{"description":"version initiale.","revision_date":"2008-01-22T00:00:00.000000"}],"risks":[{"description":"Injection de code indirecte \u00e0 distance (XSS)"}],"summary":"Les codes engendr\u00e9s par les versions vun\u00e9rables des logiciels de Adobe\npermettent une attaque du type injection de code indirect.\n","title":"Vuln\u00e9rabilit\u00e9 dans Dreamweaver et Contribute","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 APSB08-01 de Adobe du 16 janvier 2008","url":null}]}
