10

CVE-2014-0501

Adobe Shockwave Player before 12.0.9.149 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-0500.

Data is provided by the National Vulnerability Database (NVD)
AdobeShockwave Player Version <= 12.0.7.148
AdobeShockwave Player Version11.0.0.456
AdobeShockwave Player Version11.0.3.471
AdobeShockwave Player Version11.5.0.595
AdobeShockwave Player Version11.5.0.596
AdobeShockwave Player Version11.5.1.601
AdobeShockwave Player Version11.5.2.602
AdobeShockwave Player Version11.5.6.606
AdobeShockwave Player Version11.5.7.609
AdobeShockwave Player Version11.5.8.612
AdobeShockwave Player Version11.5.9.615
AdobeShockwave Player Version11.5.9.620
AdobeShockwave Player Version11.5.10.620
AdobeShockwave Player Version11.6.0.626
AdobeShockwave Player Version11.6.1.629
AdobeShockwave Player Version11.6.3.633
AdobeShockwave Player Version11.6.4.634
AdobeShockwave Player Version11.6.5.635
AdobeShockwave Player Version11.6.6.636
AdobeShockwave Player Version11.6.7.637
AdobeShockwave Player Version11.6.8.638
AdobeShockwave Player Version12.0.0.112
AdobeShockwave Player Version12.0.2.122
AdobeShockwave Player Version12.0.3.133
AdobeShockwave Player Version12.0.4.144
AdobeShockwave Player Version12.0.6.147
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 24.48% 0.959
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.