Vulnerabilities > Adobe

DATE CVE VULNERABILITY TITLE RISK
2017-12-09 CVE-2017-11213 Out-of-bounds Read vulnerability in multiple products
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions.
network
low complexity
redhat adobe CWE-125
critical
9.8
2017-12-01 CVE-2017-3105 Open Redirect vulnerability in Adobe Robohelp
Adobe RoboHelp has an Open Redirect vulnerability.
network
low complexity
adobe CWE-601
6.1
2017-12-01 CVE-2017-3104 Cross-site Scripting vulnerability in Adobe Robohelp
Adobe RoboHelp has a cross-site scripting (XSS) vulnerability.
network
low complexity
adobe CWE-79
6.1
2017-12-01 CVE-2017-11286 XXE vulnerability in Adobe Coldfusion 11.0/2016
Adobe ColdFusion has an XML external entity (XXE) injection vulnerability.
network
low complexity
adobe CWE-611
7.5
2017-12-01 CVE-2017-11285 Cross-site Scripting vulnerability in Adobe Coldfusion 11.0/2016
Adobe ColdFusion has a cross-site scripting (XSS) vulnerability.
network
low complexity
adobe CWE-79
6.1
2017-12-01 CVE-2017-11284 Deserialization of Untrusted Data vulnerability in Adobe Coldfusion 11.0/2016
Adobe ColdFusion has an Untrusted Data Deserialization vulnerability.
network
low complexity
adobe CWE-502
critical
9.8
2017-12-01 CVE-2017-11283 Deserialization of Untrusted Data vulnerability in Adobe Coldfusion 11.0/2016
Adobe ColdFusion has an Untrusted Data Deserialization vulnerability.
network
low complexity
adobe CWE-502
critical
9.8
2017-12-01 CVE-2017-11282 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Adobe Flash Player has an exploitable memory corruption vulnerability in the MP4 atom parser.
network
low complexity
adobe redhat CWE-119
critical
9.8
2017-12-01 CVE-2017-11281 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Adobe Flash Player has an exploitable memory corruption vulnerability in the text handling function.
network
low complexity
adobe redhat CWE-119
critical
9.8
2017-10-22 CVE-2017-11292 Type Confusion vulnerability in multiple products
Adobe Flash Player version 27.0.0.159 and earlier has a flawed bytecode verification procedure, which allows for an untrusted value to be used in the calculation of an array index.
network
low complexity
adobe redhat CWE-843
8.8