CVE-2013-0648
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Feb 27, 2013
Updated: Dec 20, 2024
Summary
CVE-2013-0648 is a critical vulnerability affecting Adobe Flash Player versions before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux. This unspecified issue lies in the ExternalInterface ActionScript functionality, enabling remote attackers to execute arbitrary code through crafted SWF content. This vulnerability was exploited in the wild in February 2013, underscoring the need for immediate updates to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Adobe Flash Player
- Red Hat Enterprise Linux
- Redhat Enterprise Linux Workstation
- Open SUSE
- RedHat Enterprise Linux Server
Affected Vendors
- Adobe
- Red Hat
- Opensuse
- SUSE Linux GmbH