← All CVEs

CVE-2006-0323

high · 9.3

Buffer overflow in swfformat.dll in multiple RealNetworks products and versions including RealPlayer 10.x, RealOne Player, Rhapsody 3, and Helix Player allows remote attackers to execute arbitrary code via a crafted SWF (Flash) file with (1) a size value that is less than the actual size, or (2) other unspecified manipulations.

9.3
CVSS
16.7%
EPSS (exploit prob.)
97th
EPSS percentile
2006-03-23
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
realnetworkshelix_playerall versions
realnetworksrealone_playerall versions
realnetworksrealplayer10.0
realnetworksrealplayer10.0.6
realnetworksrealplayer10.5
realnetworksrhapsody3

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-0323