Show filters
114 Total Results
Displaying 111-114 of 114
Sort by:
Attacker Value
Unknown
CVE-2008-4401
Disclosure Date: October 17, 2008 (last updated October 04, 2023)
ActionScript in Adobe Flash Player 9.0.124.0 and earlier does not require user interaction in conjunction with (1) the FileReference.browse operation in the FileReference upload API or (2) the FileReference.download operation in the FileReference download API, which allows remote attackers to create a browse dialog box, and possibly have unspecified other impact, via an SWF file.
0
Attacker Value
Unknown
CVE-2008-4503
Disclosure Date: October 09, 2008 (last updated October 04, 2023)
The Settings Manager in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to cause victims to unknowingly click on a link or dialog via access control dialogs disguised as normal graphical elements, as demonstrated by hijacking the camera or microphone, and related to "clickjacking."
0
Attacker Value
Unknown
CVE-2007-6019
Disclosure Date: April 09, 2008 (last updated October 04, 2023)
Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code via an SWF file with a modified DeclareFunction2 Actionscript tag, which prevents an object from being instantiated properly.
0
Attacker Value
Unknown
CVE-2007-6637
Disclosure Date: January 04, 2008 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Adobe Flash Player allow remote attackers to inject arbitrary web script or HTML via a crafted SWF file, related to "pre-generated SWF files" and Adobe Dreamweaver CS3 or Adobe Acrobat Connect. NOTE: the asfunction: vector is already covered by CVE-2007-6244.1.
0