Captivate
Vendor:
First CVE: Dec 31, 2005 · Active for 20 years
6
Total CVEs
More Total CVEs than 80% of tracked products
1.5
Avg CVEs / Year
Higher CVE frequency than 56% of tracked products
8.0
Avg CVSS
Higher Avg CVSS than 70% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Captivate over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 31, 2005
20 years ago
Most Recent CVE
Sep 1, 2021
1,788 days ago
CVE Severity & Scoring
Captivate6 CVEs
83%
17%
All CVEs352,708 CVEs
45%
40%
11%
HighCritical
Attack Vector
Local2 (33.3%)
Network2 (33.3%)
Unknown2 (33.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low3 (50.0%)
High1 (16.7%)
Unknown2 (33.3%)
User Interaction
None2 (33.3%)
Unknown2 (33.3%)
Required2 (33.3%)
Privileges Required
Low1 (16.7%)
High0 (0.0%)
None3 (50.0%)
Unknown2 (33.3%)
Top CVEs
Signals from CVEs in this product scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-3191HIGH Untrusted search path vulnerability in Adobe Captivate 5.0.0.596, and possibly other versions, allows local users, and possibly remote attackers, to execute arbitrary code and cond | Aug 31, 2010 | 9.3 | 29 | NO | NO |
CVE-2017-3098CRITICAL Adobe Captivate versions 9 and earlier have a remote code execution vulnerability in the quiz reporting feature that could be abused to read and write arbitrary files to the server | Jun 20, 2017 | 9.8 | 27 | NO | NO |
CVE-2021-36002HIGH Adobe Captivate version 11.5.5 (and earlier) is affected by an Creation of Temporary File In Directory With Incorrect Permissions vulnerability that could result in privilege escal | Sep 1, 2021 | 7.3 | 23 | NO | NO |
CVE-2021-21011HIGH Adobe Captivate 2019 version 11.5.1.499 (and earlier) is affected by an uncontrolled search path element vulnerability that could lead to privilege escalation. An attacker with per | Jan 13, 2021 | 7.0 | 22 | NO | NO |
CVE-2017-3087HIGH Adobe Captivate versions 9 and earlier have an information disclosure vulnerability resulting from abuse of the quiz reporting feature in Captivate. | Jun 20, 2017 | 7.5 | 20 | NO | NO |
CVE-2005-4708HIGH Adobe Macromedia MX 2004 products, Captivate, Contribute 2, Contribute 3, and eLicensing client install the Macromedia Licensing Service with the Users group permitted to configure | Dec 31, 2005 | 7.2 | 19 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (6 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (6 CVEs).
Media Mentions
Signals from CVEs in this product scope (6 CVEs).
Top CNAs Publishing CVEs For Captivate
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 5.0.0.596 | 1 | 9.3 | 5.7% | 0 | 0 |