Some previous wrong moves:
CVE-2006-3946 - Apple Safari Webkit Remote Code Execution
CVE-2007-0033 - MS07-033: Outlook Remote Code Execution
CVE-2008-5457 - Oracle Weblogic Remote Code Execution
CVE-2009-0956 - Apple QuickTime Remote Code Execution
CVE-2009-1722 - Apple OpenEXR Remote Code Execution