Vulnerability Details CVE-2011-2953
An unspecified ActiveX control in the browser plugin in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attackers to execute arbitrary code via unknown vectors, related to an out-of-bounds condition.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.058
EPSS Ranking 90.0%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2011-2953
-
cpe:2.3:a:realnetworks:realplayer:11.0
-
cpe:2.3:a:realnetworks:realplayer:11.1
-
cpe:2.3:a:realnetworks:realplayer:14.0.0
-
cpe:2.3:a:realnetworks:realplayer:14.0.1
-
cpe:2.3:a:realnetworks:realplayer:14.0.2
-
cpe:2.3:a:realnetworks:realplayer:14.0.3
-
cpe:2.3:a:realnetworks:realplayer:14.0.4
-
cpe:2.3:a:realnetworks:realplayer:14.0.5
-
cpe:2.3:a:realnetworks:realplayer:2.0
-
cpe:2.3:a:realnetworks:realplayer:2.1
-
cpe:2.3:a:realnetworks:realplayer:2.1.2
-
cpe:2.3:a:realnetworks:realplayer:2.1.3
-
cpe:2.3:a:realnetworks:realplayer:2.1.4
-
cpe:2.3:a:realnetworks:realplayer:2.1.5
-
cpe:2.3:a:realnetworks:realplayer_sp:1.0.0
-
cpe:2.3:a:realnetworks:realplayer_sp:1.0.1
-
cpe:2.3:a:realnetworks:realplayer_sp:1.0.2
-
cpe:2.3:a:realnetworks:realplayer_sp:1.0.5
-
cpe:2.3:a:realnetworks:realplayer_sp:1.1
-
cpe:2.3:a:realnetworks:realplayer_sp:1.1.1
-
cpe:2.3:a:realnetworks:realplayer_sp:1.1.2
-
cpe:2.3:a:realnetworks:realplayer_sp:1.1.3
-
cpe:2.3:a:realnetworks:realplayer_sp:1.1.4
-
cpe:2.3:a:realnetworks:realplayer_sp:1.1.5