Skip to main content

Vendor archive

adobe CVEs

Beta · best-effort

7,389 CVEs tagged to vendor adobe1,827 Critical, 2,802 High, 2,605 Medium, 155 Low, 0 Unrated.

CVE-2010-1240

Published Apr 5, 2010

Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, do not restrict the contents of one text field in the Launch File warning dialog, which ma…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-4764

Published Apr 5, 2010

Adobe Reader 8.x and 9.x on Windows is able to execute EXE files that are embedded in a PDF document, which makes it easier for remote attackers to trick users into executing arbi…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-0188

Published Feb 22, 2010

Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a denial of service (application crash) or possibly execute a…

CVSS 7.8 · High
evidence mentions
21
Buzz score
66.0
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2010-0187

Published Feb 15, 2010

Adobe Flash Player before 10.0.45.2 and Adobe AIR before 1.5.3.9130 allow remote attackers to cause a denial of service (application crash) via a modified SWF file.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0185

Published Feb 3, 2010

The default configuration of Adobe ColdFusion 9.0 does not restrict access to collections that have been created by the Solr Service, which allows remote attackers to obtain colle…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0379

Published Jan 21, 2010

Multiple unspecified vulnerabilities in the Macromedia Flash ActiveX control in Adobe Flash Player 6, as distributed in Microsoft Windows XP SP2 and SP3, might allow remote attack…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-0378

Published Jan 21, 2010

Use-after-free vulnerability in Adobe Flash Player 6.0.79, as distributed in Microsoft Windows XP SP2 and SP3, allows remote attackers to execute arbitrary code by unloading a Fla…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-4003

Published Jan 21, 2010

Multiple integer overflows in Adobe Shockwave Player before 11.5.6.606 allow remote attackers to execute arbitrary code via (1) an unspecified block type in a Shockwave file, lead…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2009-4002

Published Jan 21, 2010

Heap-based buffer overflow in Adobe Shockwave Player before 11.5.6.606 allows remote attackers to execute arbitrary code via a crafted 3D model in a Shockwave file.

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2009-3952

Published Jan 8, 2010

Buffer overflow in Adobe Illustrator CS3 13.0.3 and earlier and Illustrator CS4 14.0.0 allows attackers to execute arbitrary code via unspecified vectors.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-3792

Published Dec 21, 2009

Directory traversal vulnerability in Adobe Flash Media Server (FMS) before 3.5.3 allows attackers to load arbitrary DLL files via unspecified vectors.

CVSS 10.0 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2009-3791

Published Dec 21, 2009

Unspecified vulnerability in Adobe Flash Media Server (FMS) before 3.5.3 allows attackers to cause a denial of service (resource exhaustion) via unknown vectors.

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 7,101-7,125 of 7,389 CVEsPage 285 of 296