Vulnerabilities > Creative

DATE CVE VULNERABILITY TITLE RISK
2021-08-11 CVE-2021-38546 Unspecified vulnerability in Creative products
CREATIVE Pebble devices through 2021-08-09 allow remote attackers to recover speech signals from an LED on the device, via a telescope and an electro-optical sensor, aka a "Glowworm" attack.
network
creative
4.3
2010-06-15 CVE-2010-0990 Buffer Errors vulnerability in Creative Autoupdate and Autoupdate Engine Activex Control
Stack-based buffer overflow in Creative Software AutoUpdate Engine ActiveX Control 2.0.12.0, as used in Creative Software AutoUpdate 1.40.01, allows remote attackers to execute arbitrary code via vectors related to the BrowseFolder method.
network
low complexity
creative CWE-119
critical
10.0
2008-05-29 CVE-2008-0955 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Creative Software Autoupdate Engine
Stack-based buffer overflow in the Creative Software AutoUpdate Engine ActiveX control in CTSUEng.ocx allows remote attackers to execute arbitrary code via a long CacheFolder property value.
network
creative CWE-119
critical
9.3