Записи macromedia
116 опубликованных записей вендора macromedia.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 0,9 %
- Pre-auth RCE
- 47
- С записью об исправлении
- 16,4 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer21
- CWE-189 Numeric Errors3
- CWE-94 Improper Control of Generation of Code ('Code Injection')3
- CWE-399 Resource Management Errors2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-287 Improper Authentication1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
116 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
58В плане | CVE-2010-3654Готовый эксплойт | Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authpadobe · flash player · CWE-119 | Критическая9,3 | — | 69,7 % | 29 окт. 2010 г. |
43В плане | CVE-2002-0665Proof of concept | Macromedia JRun Administration Server allows remote attackers to bypass authentication on the login form via an extra slash (/) in the URL.macromedia · jrun | Критическая10,0 | — | 10,7 % | 11 июл. 2002 г. |
43В плане | CVE-2000-1053Proof of concept | Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack anmacromedia · jrun | Критическая10,0 | — | 10,6 % | 11 дек. 2000 г. |
43В плане | CVE-2002-0801Эксплойта нет | Buffer overflow in the ISAPI DLL filter for Macromedia JRun 3.1 allows remote attackers to execute arbitrary code via a direct request to thmacromedia · jrun | Критическая10,0 | — | 9,1 % | 12 авг. 2002 г. |
42В плане | CVE-2004-0646Эксплойта нет | Buffer overflow in the WriteToLog function for JRun 3.0 through 4.0 web server connectors, such as (1) mod_jrun and (2) mod_jrun20 for Apachmacromedia · coldfusion | Критическая10,0 | — | 7,1 % | 23 дек. 2004 г. |
40В плане | CVE-2009-3793Эксплойта нет | Unspecified vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackadobe · flash player · CWE-399 | Критическая9,3 | — | 9,4 % | 15 июн. 2010 г. |
40В плане | CVE-2010-2167Эксплойта нет | Multiple heap-based buffer overflows in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, miadobe · flash player · CWE-119 | Критическая9,3 | — | 9,0 % | 15 июн. 2010 г. |
40В плане | CVE-2010-2185Эксплойта нет | Buffer overflow in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers tadobe · flash player · CWE-119 | Критическая9,3 | — | 8,7 % | 15 июн. 2010 г. |
40В плане | CVE-2001-1514Эксплойта нет | ColdFusion 4.5 and 5, when running on Windows with the advanced security sandbox type set to "operating system," does not properly pass secumacromedia · coldfusion | Критическая10,0 | — | 1,4 % | 31 дек. 2001 г. |
39Наблюдать | CVE-2007-1403Proof of concept | Multiple stack-based buffer overflows in an ActiveX control in SwDir.dll 10.1.4.20 in Macromedia Shockwave allow remote attackers to cause amacromedia · shockwave | Высокая7,5 | — | 29,2 % | 10 мар. 2007 г. |
39Наблюдать | CVE-2010-2164Эксплойта нет | Use-after-free vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might alloadobe · flash player · CWE-399 | Критическая9,3 | — | 7,4 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2173Эксплойта нет | Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers to execute arbitraryadobe · flash player · CWE-119 | Критическая9,3 | — | 7,4 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2170Эксплойта нет | Integer overflow in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers adobe · flash player · CWE-189 | Критическая9,3 | — | 7,4 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2174Эксплойта нет | Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers to execute arbitraryadobe · flash player · CWE-119 | Критическая9,3 | — | 7,4 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2181Эксплойта нет | Integer overflow in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers adobe · flash player · CWE-189 | Критическая9,3 | — | 7,4 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2183Эксплойта нет | Integer overflow in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers adobe · flash player · CWE-189 | Критическая9,3 | — | 7,4 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2161Эксплойта нет | Array index error in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackersadobe · flash player · CWE-94 | Критическая9,3 | — | 7,1 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2163Эксплойта нет | Multiple unspecified vulnerabilities in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, miadobe · flash player · CWE-94 | Критическая9,3 | — | 7,1 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2188Эксплойта нет | Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of servadobe · flash player · CWE-119 | Критическая9,3 | — | 6,8 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2160Эксплойта нет | Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of servadobe · flash player · CWE-119 | Критическая9,3 | — | 6,8 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2162Эксплойта нет | Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of servadobe · flash player · CWE-119 | Критическая9,3 | — | 6,8 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2171Эксплойта нет | Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of servadobe · flash player · CWE-119 | Критическая9,3 | — | 6,8 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2186Эксплойта нет | Unspecified vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackadobe · flash player · CWE-94 | Критическая9,3 | — | 6,7 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2165Эксплойта нет | Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of servadobe · flash player · CWE-119 | Критическая9,3 | — | 6,1 % | 15 июн. 2010 г. |
39Наблюдать | CVE-2010-2178Эксплойта нет | Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of servadobe · flash player · CWE-119 | Критическая9,3 | — | 6,1 % | 15 июн. 2010 г. |
- CVE-2010-365458В плане
Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authp
КритическаяCVSS 9,3Готовый эксплойтEPSS 70 %adobe · flash player29 окт. 2010 г.
- CVE-2002-066543В плане
Macromedia JRun Administration Server allows remote attackers to bypass authentication on the login form via an extra slash (/) in the URL.
КритическаяCVSS 10,0Proof of conceptEPSS 11 %macromedia · jrun11 июл. 2002 г.
- CVE-2000-105343В плане
Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack an
КритическаяCVSS 10,0Proof of conceptEPSS 11 %macromedia · jrun11 дек. 2000 г.
- CVE-2002-080143В плане
Buffer overflow in the ISAPI DLL filter for Macromedia JRun 3.1 allows remote attackers to execute arbitrary code via a direct request to th
КритическаяCVSS 10,0Эксплойта нетEPSS 9 %macromedia · jrun12 авг. 2002 г.
- CVE-2004-064642В плане
Buffer overflow in the WriteToLog function for JRun 3.0 through 4.0 web server connectors, such as (1) mod_jrun and (2) mod_jrun20 for Apach
КритическаяCVSS 10,0Эксплойта нетEPSS 7 %macromedia · coldfusion23 дек. 2004 г.
- CVE-2009-379340В плане
Unspecified vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attack
КритическаяCVSS 9,3Эксплойта нетEPSS 9 %adobe · flash player15 июн. 2010 г.
- CVE-2010-216740В плане
Multiple heap-based buffer overflows in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, mi
КритическаяCVSS 9,3Эксплойта нетEPSS 9 %adobe · flash player15 июн. 2010 г.
- CVE-2010-218540В плане
Buffer overflow in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers t
КритическаяCVSS 9,3Эксплойта нетEPSS 9 %adobe · flash player15 июн. 2010 г.
- CVE-2001-151440В плане
ColdFusion 4.5 and 5, when running on Windows with the advanced security sandbox type set to "operating system," does not properly pass secu
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %macromedia · coldfusion31 дек. 2001 г.
- CVE-2007-140339Наблюдать
Multiple stack-based buffer overflows in an ActiveX control in SwDir.dll 10.1.4.20 in Macromedia Shockwave allow remote attackers to cause a
ВысокаяCVSS 7,5Proof of conceptEPSS 29 %macromedia · shockwave10 мар. 2007 г.
- CVE-2010-216439Наблюдать
Use-after-free vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allo
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-217339Наблюдать
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers to execute arbitrary
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-217039Наблюдать
Integer overflow in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-217439Наблюдать
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers to execute arbitrary
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-218139Наблюдать
Integer overflow in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-218339Наблюдать
Integer overflow in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-216139Наблюдать
Array index error in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-216339Наблюдать
Multiple unspecified vulnerabilities in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, mi
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-218839Наблюдать
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of serv
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-216039Наблюдать
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of serv
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-216239Наблюдать
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of serv
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-217139Наблюдать
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of serv
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-218639Наблюдать
Unspecified vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attack
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %adobe · flash player15 июн. 2010 г.
- CVE-2010-216539Наблюдать
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of serv
КритическаяCVSS 9,3Эксплойта нетEPSS 6 %adobe · flash player15 июн. 2010 г.
- CVE-2010-217839Наблюдать
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of serv
КритическаяCVSS 9,3Эксплойта нетEPSS 6 %adobe · flash player15 июн. 2010 г.