Lucene search

K
nvd[email protected]NVD:CVE-2012-6271
HistoryDec 20, 2012 - 12:02 p.m.

CVE-2012-6271

2012-12-2012:02:20
web.nvd.nist.gov
9

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

Low

EPSS

0.005

Percentile

77.0%

Adobe Shockwave Player through 11.6.8.638 allows remote attackers to trigger installation of arbitrary signed Xtras via a Shockwave movie that contains an Xtra URL, as demonstrated by a URL for an outdated Xtra.

Affected configurations

Nvd
Node
adobeshockwave_playerRange11.6.8.638
OR
adobeshockwave_playerMatch1.0
OR
adobeshockwave_playerMatch2.0
OR
adobeshockwave_playerMatch3.0
OR
adobeshockwave_playerMatch4.0
OR
adobeshockwave_playerMatch5.0
OR
adobeshockwave_playerMatch6.0
OR
adobeshockwave_playerMatch8.0
OR
adobeshockwave_playerMatch8.0.196
OR
adobeshockwave_playerMatch8.0.196a
OR
adobeshockwave_playerMatch8.0.204
OR
adobeshockwave_playerMatch8.0.205
OR
adobeshockwave_playerMatch8.5.1
OR
adobeshockwave_playerMatch8.5.1.100
OR
adobeshockwave_playerMatch8.5.1.103
OR
adobeshockwave_playerMatch8.5.1.105
OR
adobeshockwave_playerMatch8.5.1.106
OR
adobeshockwave_playerMatch8.5.321
OR
adobeshockwave_playerMatch8.5.323
OR
adobeshockwave_playerMatch8.5.324
OR
adobeshockwave_playerMatch8.5.325
OR
adobeshockwave_playerMatch9.0.383
OR
adobeshockwave_playerMatch9.0.432
OR
adobeshockwave_playerMatch10.0.0.210
OR
adobeshockwave_playerMatch10.0.1.004
OR
adobeshockwave_playerMatch10.1.0.11
OR
adobeshockwave_playerMatch10.1.0.011
OR
adobeshockwave_playerMatch10.1.1.016
OR
adobeshockwave_playerMatch10.1.4.020
OR
adobeshockwave_playerMatch10.2.0.021
OR
adobeshockwave_playerMatch10.2.0.022
OR
adobeshockwave_playerMatch10.2.0.023
OR
adobeshockwave_playerMatch11.0.0.456
OR
adobeshockwave_playerMatch11.0.3.471
OR
adobeshockwave_playerMatch11.5.0.595
OR
adobeshockwave_playerMatch11.5.0.596
OR
adobeshockwave_playerMatch11.5.1.601
OR
adobeshockwave_playerMatch11.5.2.602
OR
adobeshockwave_playerMatch11.5.6.606
OR
adobeshockwave_playerMatch11.5.7.609
OR
adobeshockwave_playerMatch11.5.8.612
OR
adobeshockwave_playerMatch11.5.9.615
OR
adobeshockwave_playerMatch11.5.9.620
OR
adobeshockwave_playerMatch11.5.10.620
OR
adobeshockwave_playerMatch11.6.0.626
OR
adobeshockwave_playerMatch11.6.1.629
OR
adobeshockwave_playerMatch11.6.3.633
OR
adobeshockwave_playerMatch11.6.4.634
OR
adobeshockwave_playerMatch11.6.5.635
OR
adobeshockwave_playerMatch11.6.6.636
OR
adobeshockwave_playerMatch11.6.7.637
VendorProductVersionCPE
adobeshockwave_player*cpe:2.3:a:adobe:shockwave_player:*:*:*:*:*:*:*:*
adobeshockwave_player1.0cpe:2.3:a:adobe:shockwave_player:1.0:*:*:*:*:*:*:*
adobeshockwave_player2.0cpe:2.3:a:adobe:shockwave_player:2.0:*:*:*:*:*:*:*
adobeshockwave_player3.0cpe:2.3:a:adobe:shockwave_player:3.0:*:*:*:*:*:*:*
adobeshockwave_player4.0cpe:2.3:a:adobe:shockwave_player:4.0:*:*:*:*:*:*:*
adobeshockwave_player5.0cpe:2.3:a:adobe:shockwave_player:5.0:*:*:*:*:*:*:*
adobeshockwave_player6.0cpe:2.3:a:adobe:shockwave_player:6.0:*:*:*:*:*:*:*
adobeshockwave_player8.0cpe:2.3:a:adobe:shockwave_player:8.0:*:*:*:*:*:*:*
adobeshockwave_player8.0.196cpe:2.3:a:adobe:shockwave_player:8.0.196:*:*:*:*:*:*:*
adobeshockwave_player8.0.196acpe:2.3:a:adobe:shockwave_player:8.0.196a:*:*:*:*:*:*:*
Rows per page:
1-10 of 511

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

Low

EPSS

0.005

Percentile

77.0%

Related for NVD:CVE-2012-6271