Lucene search

K
cveMitreCVE-2008-4821
HistoryNov 10, 2008 - 2:12 p.m.

CVE-2008-4821

2008-11-1014:12:55
CWE-200
mitre
web.nvd.nist.gov
79
adobe flash player
vulnerability
cve-2008-4821
nvd
security
mozilla
browser
sensitive information

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

5.6

Confidence

Low

EPSS

0.005

Percentile

76.7%

Adobe Flash Player 9.0.124.0 and earlier, when a Mozilla browser is used, does not properly interpret jar: URLs, which allows attackers to obtain sensitive information via unknown vectors.

Affected configurations

Nvd
Node
mozillacamino
OR
mozillafirefox
OR
mozillaseamonkey
AND
adobeflash_playerRange9.0.124.0
OR
adobeflash_playerMatch7.0.69.0
OR
adobeflash_playerMatch8.0.39.0
OR
adobeflash_playerMatch9.0
OR
adobeflash_playerMatch9.0.16
OR
adobeflash_playerMatch9.0.16windows
OR
adobeflash_playerMatch9.0.18d60
OR
adobeflash_playerMatch9.0.20
OR
adobeflash_playerMatch9.0.20.0
OR
adobeflash_playerMatch9.0.28
OR
adobeflash_playerMatch9.0.28.0
OR
adobeflash_playerMatch9.0.28.0mac_os_x
OR
adobeflash_playerMatch9.0.31
OR
adobeflash_playerMatch9.0.31.0
OR
adobeflash_playerMatch9.0.45.0
OR
adobeflash_playerMatch9.0.47.0
OR
adobeflash_playerMatch9.0.48.0
OR
adobeflash_playerMatch9.0.112.0
OR
adobeflash_playerMatch9.0.114.0
OR
adobeflash_playerMatch9.0.115.0
VendorProductVersionCPE
adobeflash_player9.0.16cpe:/a:adobe:flash_player:9.0.16:::
adobeflash_player9.0.28.0cpe:/a:adobe:flash_player:9.0.28.0:::
adobeflash_player9.0.115.0cpe:/a:adobe:flash_player:9.0.115.0:::
adobeflash_player9.0.31cpe:/a:adobe:flash_player:9.0.31:::
adobeflash_player9.0.48.0cpe:/a:adobe:flash_player:9.0.48.0:::
adobeflash_player9.0.18d60cpe:/a:adobe:flash_player:9.0.18d60:::
adobeflash_player9.0.28cpe:/a:adobe:flash_player:9.0.28:::
adobeflash_player8.0.39.0cpe:/a:adobe:flash_player:8.0.39.0:::
adobeflash_player9.0.114.0cpe:/a:adobe:flash_player:9.0.114.0:::
adobeflash_player9.0.20cpe:/a:adobe:flash_player:9.0.20:::
Rows per page:
1-10 of 181

References

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

5.6

Confidence

Low

EPSS

0.005

Percentile

76.7%