9.3
CVSSv2

CVE-2010-1283

Published: 13/05/2010 Updated: 05/04/2022
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Adobe Shockwave Player prior to 11.5.7.609 does not properly parse 3D objects in .dir (aka Director) files, which allows remote malicious users to execute arbitrary code or cause a denial of service (heap memory corruption) via a modified field in a 0xFFFFFF49 record.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

adobe shockwave_player