CVE-2011-4693
published 2011-12-07CVE-2011-4693: Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file…
PriorityP346critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
7.20%
93.6th percentile
Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file, as demonstrated by the first of two vulnerabilities exploited by the Intevydis vd_adobe_fp module in VulnDisco Step Ahead (SA). NOTE: as of 20111207, this disclosure has no actionable information. However, because the module author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | flash_player | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
flash-plugin: arbitrary code execution via unspecified vulnerability
vendor_redhat·2011-12-06·CVSS 9.3
CVE-2011-4693 [CRITICAL] flash-plugin: arbitrary code execution via unspecified vulnerability
flash-plugin: arbitrary code execution via unspecified vulnerability
Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file, as demonstrated by the first of two vulnerabilities exploited by the Intevydis vd_adobe_fp module in VulnDisco Step Ahead (SA). NOTE: as of 20111207, this disclosure has no actionable information. However, because the module author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
Statement: We do not currently plan to fix this issue due to the lack of further
information about the flaw and its impact. If more information becomes
available at a future date, we may revisit the issue.
Package: flash-plugin (Red Hat Enterpr
GHSA
GHSA-748f-2rjq-m95h: Unspecified vulnerability in Adobe Flash Player 11
ghsa_unreviewed·2022-05-17
CVE-2011-4693 [HIGH] GHSA-748f-2rjq-m95h: Unspecified vulnerability in Adobe Flash Player 11
Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file, as demonstrated by the first of two vulnerabilities exploited by the Intevydis vd_adobe_fp module in VulnDisco Step Ahead (SA). NOTE: as of 20111207, this disclosure has no actionable information. However, because the module author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
No detection rules found.
No public exploits indexed.
http://partners.immunityinc.com/movies/VulnDisco-Flash0day-v2.movhttp://www.securitytracker.com/id?1026392https://bugzilla.redhat.com/show_bug.cgi?id=761216https://lists.immunityinc.com/pipermail/dailydave/2011-December/000402.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14405https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15703http://partners.immunityinc.com/movies/VulnDisco-Flash0day-v2.movhttp://www.securitytracker.com/id?1026392https://bugzilla.redhat.com/show_bug.cgi?id=761216https://lists.immunityinc.com/pipermail/dailydave/2011-December/000402.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14405https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15703
2011-12-07
Published