9.3
CVSSv2

CVE-2010-1281

Published: 13/05/2010 Updated: 29/09/2022
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

iml32.dll in Adobe Shockwave Player prior to 11.5.7.609 does not validate a certain value from a file before using it in file-pointer calculations, which allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted .dir (aka Director) file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

adobe shockwave_player