9.3
CVSSv2

CVE-2010-3976

Published: 19/10/2010 Updated: 10/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Untrusted search path vulnerability in Adobe Flash Player prior to 9.0.289.0 and 10.x prior to 10.1.102.64 on Windows allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a file that is processed by Flash Player.

Vulnerable Product Search on Vulmon Subscribe to Product

adobe flash_player 9.0.20.0

adobe flash_player 9.0.246.0

adobe flash_player 9.0.18d60

adobe flash_player 9.0.16

adobe flash_player 9.0.155.0

adobe flash_player 9.0.262.0

adobe flash_player 9.0.31.0

adobe flash_player 9.0.125.0

adobe flash_player 9.0.47.0

adobe flash_player 9.0.48.0

adobe flash_player

adobe flash_player 9.0.28.0

adobe flash_player 9.0.115.0

adobe flash_player 9.0.31

adobe flash_player 9.0.152.0

adobe flash_player 9.0.45.0

adobe flash_player 9.0.28

adobe flash_player 9.0.112.0

adobe flash_player 9.0.260.0

adobe flash_player 9.0.151.0

adobe flash_player 9.0.124.0

adobe flash_player 9.0.159.0

adobe flash_player 9.0.114.0

adobe flash_player 9.0.20

adobe flash_player 10.1.95.2

adobe flash_player 10.1.95.1

adobe flash_player 10.1.82.76

adobe flash_player 10.0.0.584

adobe flash_player 10.1.92.8

adobe flash_player 10.1.52.15

adobe flash_player 10.1.53.64

adobe flash_player 10.0.12.36

adobe flash_player 10.1.52.14.1

adobe flash_player 10.0.45.2

adobe flash_player 10.0.15.3

adobe flash_player 10.0.42.34

adobe flash_player 10.0.22.87

adobe flash_player 10.0.12.10

adobe flash_player 10.0.32.18

adobe flash_player 10.1.85.3