target entity

Flash Player

33 source-linked records in the current knowledge graph.

high

CVE-2014-0502: Adobe Flash Player Double Free Vulnerablity

Adobe Flash Player contains a double free vulnerability that allows a remote attacker to execute arbitrary code. Required action: The impacted product is end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue utilization of the product.

CVE-2014-0502EPSS 24.2%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2013-0648: Adobe Flash Player Code Execution Vulnerability

Adobe Flash Player contains an unspecified vulnerability in the ExternalInterface ActionScript functionality that allows a remote attacker to execute arbitrary code via crafted SWF content. Required action: The impacted product is end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue utilization of the product.

CVE-2013-0648EPSS 11.1%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2013-0643: Adobe Flash Player Incorrect Default Permissions Vulnerability

Adobe Flash Player contains an incorrect default permissions vulnerability in the Firefox sandbox that allows a remote attacker to execute arbitrary code via crafted SWF content. Required action: The impacted product is end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue utilization of the product.

CVE-2013-0643EPSS 10.5%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2014-0497: Adobe Flash Player Integer Underflow Vulnerablity

Adobe Flash Player contains an integer underflow vulnerability that allows a remote attacker to execute arbitrary code. Required action: The impacted product is end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue utilization of the product.

CVE-2014-0497EPSS 99.9%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2012-5054: Adobe Flash Player Integer Overflow Vulnerability

Adobe Flash Player contains an integer overflow vulnerability that allows remote attackers to execute code via malformed arguments. Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2012-5054EPSS 21.2%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2012-0754: Adobe Flash Player Memory Corruption Vulnerability

Adobe Flash Player contains a memory corruption vulnerability that allows remote attackers to execute code or cause denial-of-service (DoS). Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2012-0754EPSS 92.0%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2011-0609: Adobe Flash Player Unspecified Vulnerability

Adobe Flash Player contains an unspecified vulnerability that allows remote attackers to execute code or cause denial-of-service (DoS). Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2011-0609EPSS 66.8%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2010-1297: Adobe Flash Player Memory Corruption Vulnerability

Adobe Flash Player contains a memory corruption vulnerability that allows remote attackers to execute code or cause denial-of-service (DoS). Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2010-1297EPSS 82.4%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2015-0310: Adobe Flash Player ASLR Bypass Vulnerability

Adobe Flash Player does not properly restrict discovery of memory addresses, which allows attackers to bypass the address space layout randomization (ASLR) protection mechanism. Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2015-0310EPSS 15.2%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2015-5123: Adobe Flash Player Use-After-Free Vulnerability

Use-after-free vulnerability in the BitmapData class in the ActionScript 3 (AS3) implementation in Adobe Flash Player allows remote attackers to execute code or cause a denial-of-service (DoS). Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2015-5123EPSS 18.5%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2015-5122: Adobe Flash Player Use-After-Free Vulnerability

Use-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation in Adobe Flash Player allows remote attackers to execute code or cause a denial-of-service (DoS). Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2015-5122EPSS 93.7%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2012-2034: Adobe Flash Player Memory Corruption Vulnerability

Adobe Flash Player contains a memory corruption vulnerability that allows for remote code execution or denial-of-service (DoS). Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2012-2034EPSS 7.8%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2016-7855: Adobe Flash Player Use-After-Free Vulnerability

Use-after-free vulnerability in Adobe Flash Player Windows and OS and Linux allows remote attackers to execute arbitrary code. Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2016-7855EPSS 25.2%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2016-4117: Adobe Flash Player Arbitrary Code Execution Vulnerability

An access of resource using incompatible type vulnerability exists within Adobe Flash Player that allows an attacker to perform remote code execution. Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2016-4117EPSS 94.4%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2015-5119: Adobe Flash Player Use-After-Free Vulnerability

A use-after-free vulnerability exists within the ActionScript 3 ByteArray class in Adobe Flash Player that allows an attacker to perform remote code execution. Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2015-5119EPSS 99.3%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2015-3043: Adobe Flash Player Memory Corruption Vulnerability

A memory corruption vulnerability exists in Adobe Flash Player that allows an attacker to perform remote code execution. Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2015-3043EPSS 79.8%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2012-1535: Adobe Flash Player Arbitrary Code Execution Vulnerability

Unspecified vulnerability in Adobe Flash Player allows remote attackers to execute arbitrary code or cause a denial of service via crafted SWF content. Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2012-1535EPSS 70.4%AdobeFlash Player
CISA KEV ↗ · unattributed attribution
high

CVE-2011-0611: Adobe Flash Player Remote Code Execution Vulnerability

Adobe Flash Player contains a vulnerability that allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted Flash content. Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2011-0611EPSS 99.4%AdobeFlash Player
CISA KEV ↗ · unattributed attribution