Show filters
114 Total Results
Displaying 111-114 of 114
Sort by:
Attacker Value
Unknown

CVE-2008-4401

Disclosure Date: October 17, 2008 (last updated October 04, 2023)
ActionScript in Adobe Flash Player 9.0.124.0 and earlier does not require user interaction in conjunction with (1) the FileReference.browse operation in the FileReference upload API or (2) the FileReference.download operation in the FileReference download API, which allows remote attackers to create a browse dialog box, and possibly have unspecified other impact, via an SWF file.
0
Attacker Value
Unknown

CVE-2008-4503

Disclosure Date: October 09, 2008 (last updated October 04, 2023)
The Settings Manager in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to cause victims to unknowingly click on a link or dialog via access control dialogs disguised as normal graphical elements, as demonstrated by hijacking the camera or microphone, and related to "clickjacking."
0
Attacker Value
Unknown

CVE-2007-6019

Disclosure Date: April 09, 2008 (last updated October 04, 2023)
Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code via an SWF file with a modified DeclareFunction2 Actionscript tag, which prevents an object from being instantiated properly.
0
Attacker Value
Unknown

CVE-2007-6637

Disclosure Date: January 04, 2008 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Adobe Flash Player allow remote attackers to inject arbitrary web script or HTML via a crafted SWF file, related to "pre-generated SWF files" and Adobe Dreamweaver CS3 or Adobe Acrobat Connect. NOTE: the asfunction: vector is already covered by CVE-2007-6244.1.
0