CVE-2011-2953

EUVD-2011-2921
An unspecified ActiveX control in the browser plugin in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attackers to execute arbitrary code via unknown vectors, related to an out-of-bounds condition.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 88%
Affected Products (NVD)
VendorProductVersion
realnetworksrealplayer
11.0
realnetworksrealplayer
11.1
realnetworksrealplayer
14.0.0
realnetworksrealplayer
14.0.1
realnetworksrealplayer
14.0.2
realnetworksrealplayer
14.0.3
realnetworksrealplayer
14.0.4
realnetworksrealplayer
14.0.5
realnetworksrealplayer_sp
1.0.0
realnetworksrealplayer_sp
1.0.1
realnetworksrealplayer_sp
1.0.2
realnetworksrealplayer_sp
1.0.5
realnetworksrealplayer_sp
1.1
realnetworksrealplayer_sp
1.1.1
realnetworksrealplayer_sp
1.1.2
realnetworksrealplayer_sp
1.1.3
realnetworksrealplayer_sp
1.1.4
realnetworksrealplayer_sp
1.1.5
realnetworksrealplayer
2.0
realnetworksrealplayer
2.1
realnetworksrealplayer
2.1.2
realnetworksrealplayer
2.1.3
realnetworksrealplayer
2.1.4
realnetworksrealplayer
2.1.5
𝑥
= Vulnerable software versions