CVE-2011-4694

UnknownEPSS 7.73%

Last modified

CVE-2011-4694 is a vulnerability of currently unknown severity. Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file, as demonstrated by the second of two vulnerabilities exploited by the Intevydis vd_adobe_fp module in VulnDisco Step Ahead (SA). NOTE: as of 20111207, this disclosure has no actionable information. EPSS estimates a 7.73% chance of exploitation in the next 30 days.

Description

Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file, as demonstrated by the second of two vulnerabilities exploited by the Intevydis vd_adobe_fp module in VulnDisco Step Ahead (SA). NOTE: as of 20111207, this disclosure has no actionable information. However, because the module author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

Metrics

EPSS Probability
7.73%

93.8th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
AdobeFlash Player11.1.102.55

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2011-4694?
Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file, as demonstrated by the second of two vulnerabilities exploited by the Intevydis vd_adobe_fp module in VulnDisco Step Ahead (SA). NOTE: as of 20111207, this disclosure has no actionable information. However, because the module author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
How severe is CVE-2011-4694?
Severity scoring for CVE-2011-4694 is pending analysis. The EPSS model estimates a 7.73% probability of exploitation in the next 30 days.
How do I fix CVE-2011-4694?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2011-4694?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST