CVE Database
/

CVE-2017-5240

Back to search

CVE-2017-5240

Published: May 3, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

Editions of Rapid7 AppSpider Pro prior to version 6.14.060 contain a heap-based buffer overflow in the FLAnalyzer.exe component. A malicious or malformed Flash source file can cause a denial of service condition when parsed by this component, causing the application to crash.

VendorProductVersions

Rapid7

AppSpider Pro

affected
All version prior to 6.14.060

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now