Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
player vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2022-24927
Improper privilege management vulnerability in Samsung Video Player prior to version 7.3.15.30 allows malicious users to execute video files without permission.
Samsung Video Player
9.8
CVSSv3
CVE-2020-9633
Adobe Flash Player Desktop Runtime 32.0.0.371 and previous versions, Adobe Flash Player for Google Chrome 32.0.0.371 and previous versions, and Adobe Flash Player for Microsoft Edge and Internet Explorer 32.0.0.330 and previous versions have an use after free vulnerability. Succe...
Adobe Flash Player Desktop Runtime
Adobe Flash Player
1 Article
9.8
CVSSv3
CVE-2020-6072
An exploitable code execution vulnerability exists in the label-parsing functionality of Videolabs libmicrodns 0.1.0. When parsing compressed labels in mDNS messages, the rr_decode function's return value is not checked, leading to a double free that could be exploited to ex...
Videolabs Libmicrodns 0.1.0
Debian Debian Linux 9.0
9.8
CVSSv3
CVE-2020-9380
IPTV Smarters WEB TV PLAYER through 2020-02-22 allows malicious users to execute OS commands by uploading a script.
Whmcssmarters Web Tv Player
9.8
CVSSv3
CVE-2019-20451
The HTTP API in Prismview System 9 11.10.17.00 and Prismview Player 11 13.09.1100 allows remote code execution by uploading RebootSystem.lnk and requesting /REBOOTSYSTEM or /RESTARTVNC. (Authentication is required but an XML file containing credentials can be downloaded.)
Samsung Prismview Player 11 13.09.1100
Samsung Prismview System 9 11.10.17.00
9.8
CVSSv3
CVE-2009-5041
overkill has buffer overflow via long player names that can corrupt data on the server machine
Debian Overkill
9.8
CVSSv3
CVE-2019-8070
Adobe Flash Player 32.0.0.238 and previous versions versions, 32.0.0.207 and previous versions versions have a Use after free vulnerability. Successful exploitation could lead to Arbitrary Code Execution in the context of the current user.
Adobe Flash Player Desktop Runtime
Adobe Flash Player
1 Article
9.8
CVSSv3
CVE-2019-8069
Adobe Flash Player 32.0.0.238 and previous versions versions, 32.0.0.207 and previous versions versions have a Same Origin Method Execution vulnerability. Successful exploitation could lead to Arbitrary Code Execution in the context of the current user.
Adobe Flash Player Desktop Runtime
Adobe Flash Player
1 Article
9.8
CVSSv3
CVE-2019-14801
The FV Flowplayer Video Player plugin prior to 7.3.15.727 for WordPress allows email subscription SQL injection.
Foliovision Fv Flowplayer Video Player
9.8
CVSSv3
CVE-2019-13962
lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player up to and including 3.0.7 has a heap-based buffer over-read because it does not properly validate the width and height.
Videolan Vlc Media Player
Opensuse Leap 15.0
Opensuse Leap 15.1
Opensuse Backports Sle 15.0
Debian Debian Linux 9.0
Debian Debian Linux 10.0
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 19.04
1 Article
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »