cbcvebase.
CVE-2010-3637
published 2010-11-07

CVE-2010-3637: An unspecified ActiveX control in Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 (Flash10h.ocx) on Windows allows remote attackers to execute…

PriorityP342critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
5.94%
92.4th percentile
An unspecified ActiveX control in Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 (Flash10h.ocx) on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FLV video.

Affected

2 ranges
VendorProductVersion rangeFixed in
adobeflash_player>= 10.0 < 10.1.102.6410.1.102.64
adobeflash_player>= 9.0 < 9.0.289.09.0.289.0
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.