CVE-2010-1296
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 20%
from disclosure to weapon0 days
Published on NVDMay 27
1st PoCMay 26
exploitation probability
20%top 3% of all CVEs
observed exploitation
nono source reports it
6 public exploit(s)
Multiple buffer overflows in Adobe Photoshop CS4 before 11.0.2 allow user-assisted remote attackers to execute arbitrary code via a crafted (1) .ASL, (2) .ABR, or (3) .GRD file.
Affected products
n/a · n/apublic PoCs found — 6✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/12753exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/12751exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/12752cve_referencewww.exploit-db.com/exploits/12751unverifiedcve_referencewww.exploit-db.com/exploits/12752unverifiedcve_referencewww.exploit-db.com/exploits/12753unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
https://exchange.xforce.ibmcloud.com/vulnerabilities/58888http://www.adobe.com/support/security/bulletins/apsb10-13.htmlhttp://www.exploit-db.com/exploits/12751http://www.exploit-db.com/exploits/12752http://www.exploit-db.com/exploits/12753http://www.securityfocus.com/bid/40389http://www.securitytracker.com/id?1024042http://www.zeroscience.mk/codes/psbrush_bof.txthttp://www.zeroscience.mk/codes/psgradient_bof.txthttp://www.zeroscience.mk/codes/psstyle_bof.txthttp://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4938.phphttp://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4939.php