
نسخة مرقّعة من uploader.swf و uploaderSingle.swf لإصلاح CVE-2011-2461
نسخة مصحّحة من uploader.swf و uploaderSingle.swf لإصلاح CVE-2011-2461
يمكن العثور على مزيد من المعلومات حول ملفات .swf القابلة للاستغلال في نواة Magento هنا - https://packetstormsecurity.com/files/131376/Magento-eCommerce-Vulnerable-Adobe-Flex-SDK.html
أفضل شرح للسبب الرئيسي لثغرة CVE-2011-2461 يقدمه @Mindedsecurity http://blog.mindedsecurity.com/2015/03/the-old-is-new-again-cve-2011-2461-is.html بفضل @sneak_ و @_ikki
تم تصحيح الملفات باستخدام أداة التصحيح الرسمية من Adobe (Action I) https://helpx.adobe.com/flash-builder/kb/flex-security-issue-apsb11-25.html
يمكنك أيضًا فحص ملفات SWF الخاصة بك باستخدام ParrotNG (https://github.com/ikkisoft/ParrotNG) وتصحيحها بنفسك باستخدام أداة التصحيح الرسمية من Adobe.