Exploitation Summary
CVE-2010-1297 is actively exploited and listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, added June 8, 2022.
EIP tracks 6 public exploits from researchers including Metasploit, Abysssec, anonymous, including a Metasploit module exploits/windows/browser/adobe_flashplayer_newfunction.
AI-analyzed exploit summary This exploit targets CVE-2010-1297, a vulnerability in Adobe Flash Player's DoABC tag handling, allowing arbitrary code execution via a crafted SWF embedded in a PDF. It uses a ret2lib DEP bypass via BIB.dll and AcroJS heap spraying to control memory.
Description
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted SWF content, related to authplay.dll and the ActionScript Virtual Machine 2 (AVM2) newfunction instruction, as exploited in the wild in June 2010.
Exploits (6)
This exploit targets CVE-2010-1297, a vulnerability in Adobe Flash Player's DoABC tag handling, allowing arbitrary code execution via a crafted SWF embedded in a PDF. It uses a ret2lib DEP bypass via BIB.dll and AcroJS heap spraying to control memory.
This Metasploit module exploits CVE-2010-1297, a vulnerability in Adobe Flash Player's DoABC tag handling, by embedding a crafted SWF file in a PDF. It uses AcroJS heap spraying and a DEP bypass via BIB.dll to achieve arbitrary code execution.
This exploit targets CVE-2010-1297, a vulnerability in Adobe Acrobat Reader and Flash Player involving an invalid pointer in the 'newclass' functionality. It generates a malicious PDF file with embedded SWF content to achieve remote code execution via heap spraying and ROP techniques.
The provided entry is not a functional exploit but a warning about a malicious encrypted file. The file is described as live malware taken from the wild, requiring decryption with a password. No actual exploit code is present.
This Metasploit module exploits CVE-2010-1297, a vulnerability in Adobe Flash Player's DoABC tag handling, by embedding a crafted SWF file in a PDF. It uses AcroJS heap spraying and a DEP bypass via BIB.dll to achieve arbitrary code execution.
This Metasploit module exploits CVE-2010-1297, a vulnerability in Adobe Flash Player's DoABC tag handling, by embedding a crafted SWF file in a PDF. It uses AcroJS heap spraying and a DEP bypass via BIB.dll to achieve arbitrary code execution.
References (44)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H