cbcvebase.

Adobe Shockwave Player vulnerabilities

173 known vulnerabilities affecting adobe/shockwave_player.

Total CVEs
173
CISA KEV
0
Public exploits
4
Exploited in wild
1
Severity breakdown
CRITICAL160HIGH10MEDIUM3

Vulnerabilities

Page 9 of 9
CVE-2010-2863P3CRITICALCVSS 10.0≤ 11.5.7.609v1.0+38 more2010-08-26
CVE-2010-2863 [CRITICAL] CWE-119 CVE-2010-2863: Adobe Shockwave Player before 11.5.8.612 allows attackers to cause a denial of service (memory corru Adobe Shockwave Player before 11.5.8.612 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors.
nvd
CVE-2010-1290P3CRITICALCVSS 9.3≤ 11.5.7.6092010-05-13
CVE-2010-1290 [CRITICAL] CVE-2010-1290: Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corru Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-1284, CVE-2010-1286, CVE-2010-1287, CVE-2010-1289, and CVE-2010-1291.
nvd
CVE-2010-1284P3CRITICALCVSS 9.3≤ 11.5.6.606v1.0+14 more2010-05-13
CVE-2010-1284 [CRITICAL] CWE-119 CVE-2010-1284: Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corru Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-1286, CVE-2010-1287, CVE-2010-1289, CVE-2010-1290, and CVE-2010-1291.
nvd
CVE-2010-1289P3CRITICALCVSS 9.3≤ 11.5.6.606v1.0+14 more2010-05-13
CVE-2010-1289 [CRITICAL] CVE-2010-1289: Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corru Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-1284, CVE-2010-1286, CVE-2010-1287, CVE-2010-1290, and CVE-2010-1291.
nvd
CVE-2010-1291P3CRITICALCVSS 9.3≤ 11.5.6.606v1.0+14 more2010-05-13
CVE-2010-1291 [CRITICAL] CVE-2010-1291: Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corru Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-1284, CVE-2010-1286, CVE-2010-1287, CVE-2010-1289, and CVE-2010-1290.
nvd
CVE-2010-1286P3CRITICALCVSS 9.3≤ 11.5.6.606v1.0+14 more2010-05-13
CVE-2010-1286 [CRITICAL] CVE-2010-1286: Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corru Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-1284, CVE-2010-1287, CVE-2010-1289, CVE-2010-1290, and CVE-2010-1291.
nvd
CVE-2010-1287P3CRITICALCVSS 9.3≤ 11.5.6.606v1.0+14 more2010-05-13
CVE-2010-1287 [CRITICAL] CVE-2010-1287: Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corru Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-1284, CVE-2010-1286, CVE-2010-1289, CVE-2010-1290, and CVE-2010-1291.
nvd
CVE-2017-2983P3HIGHCVSS 7.8≤ 12.2.7.1972017-03-14
CVE-2017-2983 [HIGH] CWE-426 CVE-2017-2983: Adobe Shockwave versions 12.2.7.197 and earlier have an insecure library loading (DLL hijacking) vul Adobe Shockwave versions 12.2.7.197 and earlier have an insecure library loading (DLL hijacking) vulnerability. Successful exploitation could lead to escalation of privilege.
nvd
CVE-2010-0128P3CRITICALCVSS 9.3≤ 11.5.6.6062010-05-13
CVE-2010-0128 [CRITICAL] CWE-787 CVE-2010-0128: Integer signedness error in dirapi.dll in Adobe Shockwave Player before 11.5.7.609 and Adobe Directo Integer signedness error in dirapi.dll in Adobe Shockwave Player before 11.5.7.609 and Adobe Director before 11.5.7.609 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted .dir file that triggers an invalid read operation.
nvd
CVE-2012-6270P3CRITICALCVSS 9.3≤ 11.6.8.638v1.0+49 more2012-12-20
CVE-2012-6270 [CRITICAL] CVE-2012-6270: Adobe Shockwave Player through 11.6.8.638 allows remote attackers to trigger installation of a Shock Adobe Shockwave Player through 11.6.8.638 allows remote attackers to trigger installation of a Shockwave Player 10.4.0.025 compatibility feature via a crafted HTML document that references Shockwave content with a certain compatibility parameter, related to a "downgrading" attack.
nvd
CVE-2007-5275P4MEDIUMCVSS 5.0v92007-10-08
CVE-2007-5275 [MEDIUM] CVE-2007-5275: The Adobe Macromedia Flash 9 plug-in allows remote attackers to cause a victim machine to establish The Adobe Macromedia Flash 9 plug-in allows remote attackers to cause a victim machine to establish TCP sessions with arbitrary hosts via a Flash (SWF) movie, related to lack of pinning of a hostname to a single IP address after receiving an allow-access-from element in a cross-domain-policy XML document, and the availability of a Flash Socket class that does
nvd
CVE-2010-1282P4MEDIUMCVSS 6.5fixed in 11.5.7.6092010-05-13
CVE-2010-1282 [MEDIUM] CWE-835 CVE-2010-1282: Adobe Shockwave Player before 11.5.7.609 allows remote attackers to cause a denial of service (infin Adobe Shockwave Player before 11.5.7.609 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted ATOM size in a .dir (aka Director) file.
nvd
CVE-2010-2865P4MEDIUMCVSS 5.0≤ 11.5.7.609v1.0+38 more2010-08-26
CVE-2010-2865 [MEDIUM] CVE-2010-2865: Unspecified vulnerability in Adobe Shockwave Player before 11.5.8.612 allows attackers to cause a de Unspecified vulnerability in Adobe Shockwave Player before 11.5.8.612 allows attackers to cause a denial of service via unknown vectors.
nvd
Adobe Shockwave Player vulnerabilities | cvebase