← Back

Realone Desktop Manager

realone_desktop_manager

Vendor: Realnetworks • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Realnetworks
3Realone Desktop Manager
Realone Enterprise DesktopRealone Player
Apr 16, 2026
Nov 23, 2004
N/A· v4
N/A· v3
9.3 HIGH· v2
Directory traversal vulnerability in RealOne Player, RealOne Player 2.0, and RealOne Enterprise Desktop allows remote attackers to upload arbitrary files via an RMP file that contains .. (dot dot) sequences in a .rjs ski...Show more
Directory traversal vulnerability in RealOne Player, RealOne Player 2.0, and RealOne Enterprise Desktop allows remote attackers to upload arbitrary files via an RMP file that contains .. (dot dot) sequences in a .rjs skin file.Show less
1Realnetworks
4Realone Desktop Manager
Realone Enterprise DesktopRealone Player+1 more
Apr 16, 2026
Nov 23, 2004
N/A· v4
N/A· v3
7.6 HIGH· v2
Multiple buffer overflows in RealOne Player, RealOne Player 2.0, RealOne Enterprise Desktop, and RealPlayer Enterprise allow remote attackers to execute arbitrary code via malformed (1) .RP, (2) .RT, (3) .RAM, (4) .RPM o...Show more
Multiple buffer overflows in RealOne Player, RealOne Player 2.0, RealOne Enterprise Desktop, and RealPlayer Enterprise allow remote attackers to execute arbitrary code via malformed (1) .RP, (2) .RT, (3) .RAM, (4) .RPM or (5) .SMIL files.Show less
1Realnetworks
3Realone Desktop Manager
Realone Enterprise DesktopRealone Player
Apr 16, 2026
Oct 20, 2003
N/A· v4
N/A· v3
5.1 MEDIUM· v2
RealOne player allows remote attackers to execute arbitrary script in the "My Computer" zone via a SMIL presentation with a URL that references a scripting protocol, which is executed in the security context of the previ...Show more
RealOne player allows remote attackers to execute arbitrary script in the "My Computer" zone via a SMIL presentation with a URL that references a scripting protocol, which is executed in the security context of the previously loaded URL, as demonstrated using a "javascript:" URL in the area tag.Show less