CVE-2011-2110

EXPLOITED IN THE WILD

Adobe Flash Player <10.3.181.26-10.3.185.23 - RCE

Title source: llm

Description

Adobe Flash Player before 10.3.181.26 on Windows, Mac OS X, Linux, and Solaris, and 10.3.185.23 and earlier on Android, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, as exploited in the wild in June 2011.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/19295
metasploit WORKING POC GREAT
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/adobe_flashplayer_arrayindexing.rb

Scores

EPSS 0.9150
EPSS Percentile 99.7%

Details

VulnCheck KEV 2011-06-16
InTheWild.io 2018-10-30
CWE
CWE-119
Status published
Products (50)
adobe/flash_player 6.0.21.0
adobe/flash_player 6.0.79
adobe/flash_player 7.0
adobe/flash_player 7.0.1
adobe/flash_player 7.0.14.0
adobe/flash_player 7.0.19.0
adobe/flash_player 7.0.24.0
adobe/flash_player 7.0.25
adobe/flash_player 7.0.53.0
adobe/flash_player 7.0.60.0
... and 40 more
Published Jun 16, 2011
Tracked Since Feb 18, 2026