CVE-2013-0504 describes a critical buffer overflow vulnerability in Adobe Flash Player, impacting versions prior to 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux. This flaw allows unauthenticated attackers to execute arbitrary code remotely with low attack complexity. With a CVSS score of 10.0, the vulnerability carries a severe risk of complete compromise of confidentiality, integrity, and availability. While no public exploit code (Metasploit, Nuclei, ExploitDB) is listed, the vulnerability received significant community discussion and media coverage, indicating its importance at the time of discovery.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 10.3, < 10.3.183.67CPE matchmatch criteria | cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* | ||
>= 11.6, < 11.6.602.168CPE matchmatch criteria | cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* | ||
>= 11.2, < 11.2.202.273CPE matchmatch criteria | cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.