Vulnerabilities (CVE)

Filtered by vendor Macromedia Subscribe
Filtered by product Flash Player
Total 42 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-1625 1 Macromedia 1 Flash Player 2025-04-03 5.0 MEDIUM N/A
Macromedia Flash Player 6 does not terminate connections when the user leaves the web page, which allows remote attackers to cause a denial of service (bandwidth, resource, and CPU consumption) via the (1) loadMovie or (2) loadSound commands, which continue to execute until the browser is closed.
CVE-2002-1467 1 Macromedia 2 Flash Player, Shockwave 2025-04-03 5.0 MEDIUM N/A
Macromedia Flash Plugin before 6,0,47,0 allows remote attackers to bypass the same-domain restriction and read arbitrary files via (1) an HTTP redirect, (2) a "file://" base in a web document, or (3) a relative URL from a web archive (mht file).