AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2010-3747

HIGH · CVSS 9.3 EPSS 35.35%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-10-19 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2010-3747
Severity
HIGH
CVSS
9.3
EPSS
35.35%

Original NVD Description

An ActiveX control in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, and RealPlayer Enterprise 2.1.2 does not properly initialize an unspecified object component during parsing of a CDDA URI, which allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized pointer dereference and application crash) via a long URI.