Перейти к содержимому
Noroxi

Записи Adobe

7 713 опубликованных записей вендора adobe.

Профиль для исследователя

Попали в KEV
82 · 1,1 %
С эксплойтом
110 · 1,4 %
Pre-auth RCE
2 338
С записью об исправлении
16,3 %
Медиана: публикация → KEV
2571 дн.

Охват bug bounty

Вендор продукта присутствует в публичной программе. Сопоставление по имени; проверьте текст scope в программе.

Все записи

7 713 записей
  • CVE-2024-34102
    99Срочно

    XXE can expose crypt key and other secrets granting full admin access

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    adobe · commerce13 июн. 2024 г.

  • CVE-2023-29300
    99Срочно

    Adobe ColdFusion Deserialization of Untrusted Data Arbitrary code execution

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    adobe · coldfusion12 июл. 2023 г.

  • CVE-2018-15961
    99Срочно

    Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have an unrestricted file uploa

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    adobe · coldfusion25 сент. 2018 г.

  • CVE-2015-3113
    99Срочно

    Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    adobe · flash player23 июн. 2015 г.

  • CVE-2014-0497
    99Срочно

    Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.44 on Windows and Mac OS X, and before 1

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    adobe · flash player5 февр. 2014 г.

  • CVE-2010-2861
    99Срочно

    Multiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to re

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    adobe · coldfusion11 авг. 2010 г.

  • CVE-2015-5119
    99Срочно

    Use-after-free vulnerability in the ByteArray class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.296

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 99 %

    adobe · flash player8 июл. 2015 г.

  • CVE-2022-24086
    99Срочно

    Adobe Commerce checkout improper input validation leads to remote code execution

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 99 %

    adobe · commerce16 февр. 2022 г.

  • CVE-2023-38203
    98Срочно

    Analysis CVE-2023-29300 Bypass: Adobe ColdFusion Pre-Auth RCE

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 97 %

    adobe · coldfusion20 июл. 2023 г.

  • CVE-2015-0313
    98Срочно

    Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 95 %

    adobe · flash player2 февр. 2015 г.

  • CVE-2016-4117
    97Срочно

    Adobe Flash Player 21.0.0.226 and earlier allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wil

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 94 %

    adobe · flash player10 мая 2016 г.

  • CVE-2015-5122
    97Срочно

    Use-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 94 %

    adobe · flash player14 июл. 2015 г.

  • CVE-2013-0625
    97Срочно

    Adobe ColdFusion 9.0, 9.0.1, and 9.0.2, when a password is not configured, allows remote attackers to bypass authentication and possibly exe

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 94 %

    adobe · coldfusion8 янв. 2013 г.

  • CVE-2013-0632
    97Срочно

    administrator.cfc in Adobe ColdFusion 9.0, 9.0.1, 9.0.2, and 10 allows remote attackers to bypass authentication and possibly execute arbitr

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 94 %

    adobe · coldfusion16 янв. 2013 г.

  • CVE-2017-3066
    96Срочно

    Adobe ColdFusion 2016 Update 3 and earlier, ColdFusion 11 update 11 and earlier, ColdFusion 10 Update 22 and earlier have a Java deserializa

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 91 %

    adobe · coldfusion27 апр. 2017 г.

  • CVE-2011-2462
    96Срочно

    Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Windows and Mac OS X, and Adobe Reader 9.x

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 89 %

    adobe · acrobat7 дек. 2011 г.

  • CVE-2025-54253
    96Срочно

    Adobe Experience Manager | Incorrect Authorization (CWE-863)

    КритическаяCVSS 10,0KEVГотовый эксплойтEPSS 88 %

    adobe · experience manager forms5 авг. 2025 г.

  • CVE-2011-0611
    95Срочно

    Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 99 %

    adobe · flash player13 апр. 2011 г.

  • CVE-2015-0311
    95Срочно

    Unspecified vulnerability in Adobe Flash Player through 13.0.0.262 and 14.x, 15.x, and 16.x through 16.0.0.287 on Windows and OS X and throu

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 86 %

    adobe · flash player23 янв. 2015 г.

  • CVE-2009-0927
    94Срочно

    Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 before 7.1.1 allows remote attackers to e

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 97 %

    adobe · acrobat reader19 мар. 2009 г.

  • CVE-2025-54236
    94Срочно

    Adobe Commerce | Improper Input Validation (CWE-20)

    КритическаяCVSS 9,1KEVГотовый эксплойтEPSS 95 %

    adobe · commerce9 сент. 2025 г.

  • CVE-2023-26360
    93Срочно

    Adobe ColdFusion Improper Access Control Arbitrary code execution

    ВысокаяCVSS 8,6KEVГотовый эксплойтEPSS 97 %

    adobe · coldfusion23 мар. 2023 г.

  • CVE-2013-3346
    93Срочно

    Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 79 %

    adobe · acrobat30 авг. 2013 г.

  • CVE-2026-71362
    92Срочно

    Adobe Commerce | Incorrect Authorization (CWE-863)

    КритическаяCVSS 9,1KEVГотовый эксплойтEPSS 88 %

    adobe · commerce11 авг. 2026 г.

  • CVE-2008-2992
    91Срочно

    Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file t

    ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 98 %

    adobe · acrobat4 нояб. 2008 г.