CVE-2010-0986
- EPSS 9.79%
- Veröffentlicht 13.05.2010 17:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Adobe Shockwave Player before 11.5.7.609 does not properly process asset entries, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted Shockwave file.
CVE-2010-0987
- EPSS 11.73%
- Veröffentlicht 13.05.2010 17:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in Adobe Shockwave Player before 11.5.7.609 might allow remote attackers to execute arbitrary code via crafted embedded fonts in a Shockwave file.
CVE-2009-4002
- EPSS 21.29%
- Veröffentlicht 21.01.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in Adobe Shockwave Player before 11.5.6.606 allows remote attackers to execute arbitrary code via a crafted 3D model in a Shockwave file.
CVE-2009-4003
- EPSS 17.23%
- Veröffentlicht 21.01.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer overflows in Adobe Shockwave Player before 11.5.6.606 allow remote attackers to execute arbitrary code via (1) an unspecified block type in a Shockwave file, leading to a heap-based buffer overflow; and might allow remote attackers t...
CVE-2009-3463
- EPSS 7.28%
- Veröffentlicht 04.11.2009 15:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Array index error in Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via crafted Shockwave content on a web site. NOTE: some of these details are obtained from third party information.
CVE-2009-3464
- EPSS 11.78%
- Veröffentlicht 04.11.2009 15:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via crafted Shockwave content on a web site, related to an "invalid pointer vulnerability," a different issue than CVE-2009-3465. NOTE: some of these details ...
CVE-2009-3465
- EPSS 11.78%
- Veröffentlicht 04.11.2009 15:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via crafted Shockwave content on a web site, related to an "invalid pointer vulnerability," a different issue than CVE-2009-3464. NOTE: some of these details ...
CVE-2009-3466
- EPSS 4.3%
- Veröffentlicht 04.11.2009 15:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via a crafted web page that triggers memory corruption, related to an "invalid string length vulnerability." NOTE: some of these details are obtained from thir...
CVE-2009-3244
- EPSS 46.11%
- Veröffentlicht 18.09.2009 10:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Heap-based buffer overflow in the SwDir.dll ActiveX control in Adobe Shockwave Player 11.5.1.601 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long PlayerVersion property value.
CVE-2009-1860
- EPSS 7.73%
- Veröffentlicht 25.06.2009 01:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Adobe Shockwave Player before 11.5.0.600 allows remote attackers to execute arbitrary code via crafted Shockwave Player 10 content.