Lucene search

K
cve[email protected]CVE-2006-3311
HistorySep 12, 2006 - 11:07 p.m.

CVE-2006-3311

2006-09-1223:07:00
web.nvd.nist.gov
33
cve-2006-3311
buffer overflow
adobe flash player
remote code execution
swf movie
security vulnerability

5.1 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

7.6 High

AI Score

Confidence

Low

0.798 High

EPSS

Percentile

98.3%

Buffer overflow in Adobe Flash Player 8.0.24.0 and earlier, Flash Professional 8, Flash MX 2004, and Flex 1.5 allows user-assisted remote attackers to execute arbitrary code via a long, dynamically created string in a SWF movie.

Affected configurations

NVD
Node
adobeflash_playerRange8.0.24.0
OR
adobeflash_playerMatch8pro
OR
adobeflash_playerMatchmx_2004
OR
adobeflex_sdkMatch1.5

References

5.1 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

7.6 High

AI Score

Confidence

Low

0.798 High

EPSS

Percentile

98.3%