Lucene search

K
nvd[email protected]NVD:CVE-2008-4473
HistoryOct 17, 2008 - 7:31 p.m.

CVE-2008-4473

2008-10-1719:31:15
CWE-119
web.nvd.nist.gov
6

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

Low

EPSS

0.258

Percentile

96.7%

Multiple heap-based buffer overflows in Adobe Flash CS3 Professional on Windows and Flash MX 2004 allow remote attackers to execute arbitrary code via an SWF file containing long control parameters.

Affected configurations

Nvd
Node
adobeflash_playerMatchcs3professional
AND
microsoftwindows
Node
adobeflash_playerMatchmx_2004
VendorProductVersionCPE
adobeflash_playercs3cpe:2.3:a:adobe:flash_player:cs3:*:professional:*:*:*:*:*
microsoftwindows*cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*
adobeflash_playermx_2004cpe:2.3:a:adobe:flash_player:mx_2004:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

Low

EPSS

0.258

Percentile

96.7%

Related for NVD:CVE-2008-4473