Contact About
  • Store
  • Products
  • Support
  • Community
  • Jing
  • Product Info
  • Tutorials
  • Free Download
  • Camtasia for Mac
  • Product Info
  • Tutorials
  • Free Trial
  • Buy
  • Screencast.com
  • Product Info
  • Tutorials
  • Free Account
  • Buy
  • Snagit
  • Product Info
  • Tutorials
  • Free Trial
  • Buy
  • Camtasia Relay
  • Product Info
  • Tutorials
  • Free Trial
  • Buy
  • Morae
  • Product Info
  • Tutorials
  • Free Trial
  • Buy
  • Camtasia Studio
  • Product Info
  • Tutorials
  • Free Trial
  • Buy
  • Coach's Eye
  • Product Info
  • Download Now
See All Downloads
TechSmith Labs

We're experimenting with new ideas and technologies to see what sticks. Check out what we've cooked up and let us know what you think!

Visit Labs
Training Resources

Stop by our library of training resources and learn something new! Inside you'll find videos, tutorials, guides, and more to help you improve your use of TechSmith tools. You'll be a pro in no time!

Start Learning
Skip Navigation
Log In | Sign Up
Forgot your username or password?
  • Answers
  • Ask a Question
  • My Stuff Support History Account Settings Notifications

Search

Advanced Search
Screen Reader users press enter to Limit by product.  Limit by product
Search Tips
Search filters applied

Configuration Manipulation and Cross-site Scripting Vulnerabilities in Flash SWF Files

Answer ID
2270
  |    Published 10/15/2009 07:32 PM   |    Updated 08/18/2011 12:49 PM  |   
Access Level
Everyone

Date Issued: October 27th, 2009

Affected Software and Components: Flash SWF files created using Camtasia Studio 6.01, 6.02, and 6.03 with the Express Show template with SWF output. Flash SWF files created using Camtasia Studio with other templates are not affected. The vulnerability can be executed in FireFox, Safari, and Google Chrome browsers.

Vulnerability Description: If Flash SWF files are created by the above affected software and then embedded in a website, the website hosting the Flash content may be vulnerable to SWF player configuration manipulation and cross-site scripting attacks. An attacker can craft links to the vulnerable Flash content in order to perform a cross-site scripting attack: when the vulnerable Flash content is viewed by a website visitor, the visitor's Flash player may take insecure, potentially harmful actions. These actions include modification of website content, sending website information such as cookies to the attacker, and redirection to arbitrary websites. The attacker can also modify the configuration of the SWF file to display attacker-specified text, pause at arbitrary times, and link to attacker-specified URLs.

Workaround or Mitigations: In order to fix the issue please extract the two SWF files from the attached zip file and place them in the following directory.

C:\Program Files\TechSmith\Camtasia Studio 6\Media\Studio\Swf

You will be prompted that these files will overwrite the ones that are already there which is okay. Once the files have been overwritten restart Camtasia and reproduce your videos to SWF.

Once the fix has been applied, customers with vulnerable SWF files hosted on a website should reproduce the SWF file. The newly reproduced SWF file will not be vulnerable and can replace the old vulnerable SWF file.

Customers concerned about viewing Flash content can view Flash SWF files using Internet Explorer or Opera which are not affected by this issue.

Additional Information: No other TechSmith products or services are affected by this vulnerability. All SWF files hosted by TechSmith's Screencast.com media hosting site are not affected by this vulnerability. Input parameters passed to the SWF files hosted on Screencast.com are provided by the Screencast.com service, which mitigates this vulnerability. SWF files produced by Jing and Camtasia Relay are not affected by this vulnerability. All other TechSmith products do not produce or use SWF files.

Acknowledgements: TechSmith would like to thank Michael Schmidt of Compass Security Network Computing for reporting this issue to us and working with us while we developed a fix.

File Attachments
  • ZIP document B2_ConfigurationManipulationinFlashSWFFiles.zip (773.35 KB)
How well did this answer your question?
Rate answer 5 of 5 Rate answer 4 of 5 Rate answer 3 of 5 Rate answer 2 of 5 Rate answer 1 of 5   
Please tell us how we can make this answer more useful.

Users who viewed this answer have also viewed

  • Snagit for Mac or Camtasia for Mac will take my key, but on next start it acts as trial again
  • Transcription fails on new install of Relay 3.0.2 or greater.
  • Cross-site Scripting (XSS) Vulnerability in Camtasia Relay Admin Help HTML Files.
  • Error: Failed to save document
  • Camtasia Studio: Menus or popups not being captured in recording
Share
  • Delicious
  • Digg
  • Facebook
  • Reddit
  • StumbleUpon
  • Twitter
Print
Email this page
Notify Me
Forgot your username or password?

Find Answers

Contact Us

Ask a Question Submit a question to our support team.
Give Feedback
How can we make this site more useful for you?
Powered By RightNow Technologies
Store
  • Buy Now
  • Volume Pricing
  • Education Pricing
  • Gov't/Non-Profit Pricing
  • Contact Sales
  • Find a Reseller
Products
  • Jing
  • Snagit
  • Camtasia Studio
  • Camtasia for Mac
  • Camtasia Relay
  • Screencast.com
  • Morae
  • Coach's Eye
Support
  • Tutorials
  • Tech Support
  • Lost Software Key
Community
  • Newsletters
  • Education Community
  • Education Blog
  • TechSmith Blog
  • Questions & Feedback
  • Social Media
About
  • Company History
  • Management Team
  • Press Room
  • Calendar of Events
  • Careers
  • Resellers
  • Presentation Materials
  • Contact Us

© 1995 - 2012, Corporation, All Rights Reserved.

  • Privacy Policy
  • Accessibility
  • Contact
  • Sitemap