CVE-2012-6270

Publication date

2012-12-20 11:00:00

Family

certcc

State

PUBLISHED

Description

Adobe Shockwave Player through 11.6.8.638 allows remote attackers to trigger installation of a Shockwave Player 10.4.0.025 compatibility feature via a crafted HTML document that references Shockwave content with a certain compatibility parameter, related to a "downgrading" attack.