• Global community
    • Language:
      • Deutsch
      • English
      • Español
      • Français
      • Português
  • 日本語コミュニティ
    Dedicated community for Japanese speakers
  • 한국 커뮤니티
    Dedicated community for Korean speakers
Exit
Locked
0

Security Issue with Adobe Flash Player

New Here ,
Mar 06, 2018 Mar 06, 2018

Copy link to clipboard

Copied

Hi Adobe Experts,

We are using adobe flash player to display Approval graph for Oracle Hyperion. The network team has stopped the adobe flash player due to below vulnerability issues: -

Flash file served by HTTP host without domain name detected

File-Flash_Suspicious-Content-From-IP-Address-Host

Kindly Suggest, how to handle this

Regards,

Chandan Mishra

Views

191

Translate

Translate

Report

Report
Community guidelines
Be kind and respectful, give credit to the original source of content, and search for duplicates before posting. Learn more
community guidelines
Adobe Employee ,
Mar 07, 2018 Mar 07, 2018

Copy link to clipboard

Copied

Hi Chandan,

Do you have cross-domain policy file in place on your server? Seems to be permission control issue. Please go through mentioned links: Cross-domain policy file specification | Adobe Developer Connection, Adobe Flash Platform * Permission controls. Hope this will help you resolving the issue.

Thanks!

Votes

Translate

Translate

Report

Report
Community guidelines
Be kind and respectful, give credit to the original source of content, and search for duplicates before posting. Learn more
community guidelines
Adobe Employee ,
Mar 09, 2018 Mar 09, 2018

Copy link to clipboard

Copied

LATEST

This has nothing to do with Flash Player per se.

The error that you're reporting is saying that your web-based application is requesting a .SWF file from a host on your network that's referenced only by it's IP address.  You would need to either work with your network team to whitelist that particular IP address from their security rule, or you'd need to modify your internal application to serve the offending link from a corresponding hostname and not just an IP address.

I presume that this requirement exists because your IT team manages DNS, and by banning IP address accesses, they can ensure that any new servers added to the network go through them for proper vetting.

Votes

Translate

Translate

Report

Report
Community guidelines
Be kind and respectful, give credit to the original source of content, and search for duplicates before posting. Learn more
community guidelines