Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
player vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2022-32291
In Real Player up to and including 20.1.0.312, attackers can execute arbitrary code by placing a UNC share pathname (for a DLL file) in a RAM file.
Realnetworks Realplayer
1 Github repository
8.8
CVSSv3
CVE-2020-9746
Adobe Flash Player version 32.0.0.433 (and previous versions) are affected by an exploitable NULL pointer dereference vulnerability that could result in a crash and arbitrary code execution. Exploitation of this issue requires an malicious user to insert malicious strings in an H...
Adobe Flash Player
1 Article
8.8
CVSSv3
CVE-2020-5764
MX Player Android App versions prior to v1.24.5, are vulnerable to a directory traversal vulnerability when user is using the MX Transfer feature in "Receive" mode. An attacker can exploit this by connecting to the MX Transfer session as a "sender" and sending...
Mxplayer Mx Player
8.8
CVSSv3
CVE-2020-9408
The Spotfire library component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace and TIBCO Spotfire Server contains a vulnerability that theoretically allows an attacker with write permissions to the Spotfire Library, but not "Script Author&...
Tibco Spotfire Analytics Platform For Aws
Tibco Spotfire Server
Tibco Spotfire Server 7.12.0
Tibco Spotfire Server 7.13.0
Tibco Spotfire Server 7.14.0
Tibco Spotfire Server 10.0.0
Tibco Spotfire Server 10.0.1
Tibco Spotfire Server 10.1.0
Tibco Spotfire Server 10.2.0
Tibco Spotfire Server 10.3.0
Tibco Spotfire Server 10.3.1
Tibco Spotfire Server 10.3.2
Tibco Spotfire Server 10.3.3
Tibco Spotfire Server 10.3.4
Tibco Spotfire Server 10.3.5
Tibco Spotfire Server 10.3.6
Tibco Spotfire Server 10.4.0
Tibco Spotfire Server 10.5.0
Tibco Spotfire Server 10.6.0
Tibco Spotfire Server 10.6.1
Tibco Spotfire Server 10.7.0
Tibco Spotfire Server 10.8.0
1 Github repository
8.8
CVSSv3
CVE-2020-3757
Adobe Flash Player versions 32.0.0.321 and previous versions, 32.0.0.314 and previous versions, 32.0.0.321 and previous versions, and 32.0.0.255 and previous versions have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.
Adobe Flash Player
Redhat Enterprise Linux Desktop 6.0
Redhat Enterprise Linux Server 6.0
Redhat Enterprise Linux Workstation 6.0
1 Github repository
1 Article
8.8
CVSSv3
CVE-2019-5851
Use after free in WebAudio in Google Chrome before 76.0.3809.87 allowed a remote malicious user to potentially exploit heap corruption via a crafted HTML page.
Google Chrome
8.8
CVSSv3
CVE-2019-5853
Inappropriate implementation in JavaScript in Google Chrome before 76.0.3809.87 allowed a remote malicious user to potentially exploit heap corruption via a crafted HTML page.
Google Chrome
8.8
CVSSv3
CVE-2019-5854
Integer overflow in PDFium in Google Chrome before 76.0.3809.87 allowed a remote malicious user to potentially exploit heap corruption via a crafted PDF file.
Google Chrome
8.8
CVSSv3
CVE-2019-5856
Insufficient policy enforcement in storage in Google Chrome before 76.0.3809.87 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page.
Google Chrome
8.8
CVSSv3
CVE-2019-5858
Incorrect security UI in MacOS services integration in Google Chrome on OS X before 76.0.3809.87 allowed a local malicious user to execute arbitrary code via a crafted HTML page.
Google Chrome
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »