9.3
CVSSv2

CVE-2009-4003

Published: 21/01/2010 Updated: 10/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple integer overflows in Adobe Shockwave Player prior to 11.5.6.606 allow remote malicious users to execute arbitrary code via (1) an unspecified block type in a Shockwave file, leading to a heap-based buffer overflow; and might allow remote malicious users to execute arbitrary code via (2) an unspecified 3D block in a Shockwave file, leading to memory corruption; or (3) a crafted 3D model in a Shockwave file, leading to heap memory corruption.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

adobe shockwave player 5.0

adobe shockwave player 6.0

adobe shockwave player

adobe shockwave player 1.0

adobe shockwave player 10.1.0.11

adobe shockwave player 11.0.0.456

adobe shockwave player 9

adobe shockwave player 4.0

adobe shockwave player 11.5.1.601

adobe shockwave player 8.0

adobe shockwave player 11.5.0.596

adobe shockwave player 2.0

adobe shockwave player 3.0

adobe shockwave player 11.5.0.595

adobe shockwave player 8.5.1