CVE-2013-0648

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Feb 27, 2013
Updated: Dec 20, 2024

Summary

CVE-2013-0648 is a critical vulnerability affecting Adobe Flash Player versions before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux. This unspecified issue lies in the ExternalInterface ActionScript functionality, enabling remote attackers to execute arbitrary code through crafted SWF content. This vulnerability was exploited in the wild in February 2013, underscoring the need for immediate updates to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Adobe Flash Player
  • Red Hat Enterprise Linux
  • Redhat Enterprise Linux Workstation
  • Open SUSE
  • RedHat Enterprise Linux Server

Affected Vendors

  • Adobe
  • Red Hat
  • Opensuse
  • SUSE Linux GmbH