9.3

CVE-2011-2952

Use-after-free vulnerability in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attackers to execute arbitrary code via vectors related to a dialog box.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
RealnetworksRealplayer Version11.0
RealnetworksRealplayer Version11.1
RealnetworksRealplayer Version14.0.0
RealnetworksRealplayer Version14.0.1
RealnetworksRealplayer Version14.0.2
RealnetworksRealplayer Version14.0.3
RealnetworksRealplayer Version14.0.4
RealnetworksRealplayer Version14.0.5
RealnetworksRealplayer Sp Version1.0.0
RealnetworksRealplayer Sp Version1.0.1
RealnetworksRealplayer Sp Version1.0.2
RealnetworksRealplayer Sp Version1.0.5
RealnetworksRealplayer Sp Version1.1
RealnetworksRealplayer Sp Version1.1.1
RealnetworksRealplayer Sp Version1.1.2
RealnetworksRealplayer Sp Version1.1.3
RealnetworksRealplayer Sp Version1.1.4
RealnetworksRealplayer Sp Version1.1.5
RealnetworksRealplayer Version2.0 Editionenterprise
RealnetworksRealplayer Version2.1 Editionenterprise
RealnetworksRealplayer Version2.1.2 Editionenterprise
RealnetworksRealplayer Version2.1.3 Editionenterprise
RealnetworksRealplayer Version2.1.4 Editionenterprise
RealnetworksRealplayer Version2.1.5 Editionenterprise
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.65% 0.813
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C