CVE-2017-2983

Description

Adobe Shockwave versions 12.2.7.197 and earlier have an insecure library loading (DLL hijacking) vulnerability. Successful exploitation could lead to escalation of privilege.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
2.171

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2017-2983 are affected in Adobe Shockwave Player (12.2.7.197)Windows
Vulnerabilities CVE-2017-2983 are affected in Adobe Shockwave Player 12.2.7.197Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-309312Adobe Shockwave Player (12.3.5.205)
PATCH-309312Adobe Shockwave Player (12.3.5.205)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234