cpe:/a:adobe:flash_player:9.0.16 cpe:/a:adobe:flash_player:9.0.18d60 cpe:/a:adobe:flash_player:9.0.20 cpe:/a:adobe:flash_player:9.0.20.0 cpe:/a:adobe:flash_player:9.0.28 cpe:/a:adobe:flash_player:9.0.28.0 cpe:/a:adobe:flash_player:9.0.31 cpe:/a:adobe:flash_player:9.0.31.0 cpe:/a:adobe:flash_player:9.0.45.0 cpe:/a:adobe:flash_player:9.0.47.0 cpe:/a:adobe:flash_player:9.0.48.0 cpe:/a:adobe:flash_player:9.0.112.0 cpe:/a:adobe:flash_player:9.0.114.0 cpe:/a:adobe:flash_player:9.0.115.0 cpe:/a:adobe:flash_player:9.0.124.0 cpe:/a:adobe:flash_player:9.0.125.0 cpe:/a:adobe:flash_player:9.0.151.0 cpe:/a:adobe:flash_player:9.0.152.0 cpe:/a:adobe:flash_player:9.0.155.0 cpe:/a:adobe:flash_player:9.0.159.0 cpe:/a:adobe:flash_player:9.0.246.0 cpe:/a:adobe:flash_player:9.0.260.0 cpe:/a:adobe:flash_player:9.0.262.0 cpe:/a:adobe:flash_player:9.0.277.0 cpe:/a:adobe:flash_player:10.0.0.584 cpe:/a:adobe:flash_player:10.0.12.10 cpe:/a:adobe:flash_player:10.0.12.36 cpe:/a:adobe:flash_player:10.0.15.3 cpe:/a:adobe:flash_player:10.0.22.87 cpe:/a:adobe:flash_player:10.0.32.18 cpe:/a:adobe:flash_player:10.0.42.34 cpe:/a:adobe:flash_player:10.0.45.2 cpe:/a:adobe:flash_player:10.1.52.14.1 cpe:/a:adobe:flash_player:10.1.52.15 cpe:/a:adobe:flash_player:10.1.53.64 cpe:/a:adobe:flash_player:10.1.82.76 cpe:/a:adobe:flash_player:10.1.85.3 cpe:/a:adobe:flash_player:10.1.92.8 cpe:/a:adobe:flash_player:10.1.92.10 cpe:/a:adobe:flash_player:10.1.95.1 cpe:/a:adobe:flash_player:10.1.95.2 CVE-2010-3976 2010-10-19T17:00:10.330-04:00 2017-09-18T21:31:38.427-04:00 9.3 NETWORK MEDIUM NONE COMPLETE COMPLETE COMPLETE http://nvd.nist.gov 2010-10-20T16:51:00.000-04:00 BUGTRAQ 20100910 Adobe Flash Player IE version 10.1.x Insecure DLL Hijacking Vulnerability (dwmapi.dll) BUGTRAQ 20101105 ASPR #2010-11-05-01: Remote Binary Planting in Adobe Flash Player SECUNIA 43026 BID 44671 VUPEN ADV-2010-2903 VUPEN ADV-2011-0192 APPLE APPLE-SA-2010-11-10-1 GENTOO GLSA-201101-09 HP HPSBMA02663 HP SSRT100428 SUSE SUSE-SA:2010:055 MISC http://core.yehg.net/lab/pr0js/advisories/dll_hijacking/%5Bflash_player%5D_10.1.x_insecure_dll_hijacking_%28dwmapi.dll%29 CONFIRM http://support.apple.com/kb/HT4435 MISC http://www.acrossecurity.com/aspr/ASPR-2010-11-05-1-PUB.txt CONFIRM http://www.adobe.com/support/security/bulletins/apsb10-26.html Untrusted search path vulnerability in Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a file that is processed by Flash Player.