Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The (1) Upsell.htm, (2) Main.html, and (3) Custsupport.html components in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.1.2 and 2.1.3 allow remote attackers to inject code into the RealOneActiveXObject process, and consequently bypass intended Local Machine Zone restrictions and load arbitrary ActiveX controls, via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
RealNetworks RealPlayer RealOneActiveXObject进程输入验证漏洞
Vulnerability Description
RealPlayer是Real Networks公司发布和维护的一个软件包,可以用来播放Real Media格式编码的多媒体文件。 RealNetworks RealPlayer 11.0至11.1版本,RealPlayer SP 1.0至1.1.5版本,RealPlayer Enterprise 2.1.2及2.1.3版本中的(1)Upsell.htm,(2)Main.html,以及(3)Custsupport.html组件中存在输入验证漏洞。远程攻击者可以借助未明向量向RealOneActiveXOb
CVSS Information
N/A
Vulnerability Type
N/A