CVE-2011-4693

UnknownEPSS 7.20%

Last modified

CVE-2011-4693 is a vulnerability of currently unknown severity. Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file, as demonstrated by the first of two vulnerabilities exploited by the Intevydis vd_adobe_fp module in VulnDisco Step Ahead (SA). NOTE: as of 20111207, this disclosure has no actionable information. EPSS estimates a 7.20% chance of exploitation in the next 30 days.

Description

Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file, as demonstrated by the first of two vulnerabilities exploited by the Intevydis vd_adobe_fp module in VulnDisco Step Ahead (SA). NOTE: as of 20111207, this disclosure has no actionable information. However, because the module author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

Metrics

EPSS Probability
7.20%

93.5th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
AdobeFlash Player11.1.102.55

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2011-4693?
Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file, as demonstrated by the first of two vulnerabilities exploited by the Intevydis vd_adobe_fp module in VulnDisco Step Ahead (SA). NOTE: as of 20111207, this disclosure has no actionable information. However, because the module author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
How severe is CVE-2011-4693?
Severity scoring for CVE-2011-4693 is pending analysis. The EPSS model estimates a 7.20% probability of exploitation in the next 30 days.
How do I fix CVE-2011-4693?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2011-4693?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST