Lucene search

K
cveAdobeCVE-2012-0772
HistoryMar 28, 2012 - 7:55 p.m.

CVE-2012-0772

2012-03-2819:55:00
CWE-119
adobe
web.nvd.nist.gov
110
adobe flash player
air
activex control
remote attackers
arbitrary code
denial of service

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.044

Percentile

92.4%

An unspecified ActiveX control in Adobe Flash Player before 10.3.183.18 and 11.x before 11.2.202.228, and AIR before 3.2.0.2070, on Windows does not properly perform URL security domain checking, which allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors.

Affected configurations

Nvd
Node
adobeflash_playerRange10.3.183.16
OR
adobeflash_playerMatch2
OR
adobeflash_playerMatch3
OR
adobeflash_playerMatch4
OR
adobeflash_playerMatch5
OR
adobeflash_playerMatch6
OR
adobeflash_playerMatch6.0.21.0
OR
adobeflash_playerMatch6.0.79
OR
adobeflash_playerMatch7.0
OR
adobeflash_playerMatch7.0.1
OR
adobeflash_playerMatch7.0.14.0
OR
adobeflash_playerMatch7.0.19.0
OR
adobeflash_playerMatch7.0.24.0
OR
adobeflash_playerMatch7.0.25
OR
adobeflash_playerMatch7.0.53.0
OR
adobeflash_playerMatch7.0.60.0
OR
adobeflash_playerMatch7.0.61.0
OR
adobeflash_playerMatch7.0.63
OR
adobeflash_playerMatch7.0.66.0
OR
adobeflash_playerMatch7.0.67.0
OR
adobeflash_playerMatch7.0.68.0
OR
adobeflash_playerMatch7.0.69.0
OR
adobeflash_playerMatch7.0.70.0
OR
adobeflash_playerMatch7.0.73.0
OR
adobeflash_playerMatch7.1
OR
adobeflash_playerMatch7.1.1
OR
adobeflash_playerMatch7.2
OR
adobeflash_playerMatch8.0
OR
adobeflash_playerMatch8.0.22.0
OR
adobeflash_playerMatch8.0.24.0
OR
adobeflash_playerMatch8.0.33.0
OR
adobeflash_playerMatch8.0.34.0
OR
adobeflash_playerMatch8.0.35.0
OR
adobeflash_playerMatch8.0.39.0
OR
adobeflash_playerMatch8.0.42.0
OR
adobeflash_playerMatch9.0
OR
adobeflash_playerMatch9.0.9.0
OR
adobeflash_playerMatch9.0.16
OR
adobeflash_playerMatch9.0.18d60
OR
adobeflash_playerMatch9.0.20
OR
adobeflash_playerMatch9.0.20.0
OR
adobeflash_playerMatch9.0.28
OR
adobeflash_playerMatch9.0.28.0
OR
adobeflash_playerMatch9.0.31
OR
adobeflash_playerMatch9.0.31.0
OR
adobeflash_playerMatch9.0.45.0
OR
adobeflash_playerMatch9.0.47.0
OR
adobeflash_playerMatch9.0.48.0
OR
adobeflash_playerMatch9.0.112.0
OR
adobeflash_playerMatch9.0.114.0
OR
adobeflash_playerMatch9.0.115.0
OR
adobeflash_playerMatch9.0.124.0
OR
adobeflash_playerMatch9.0.125.0
OR
adobeflash_playerMatch9.0.151.0
OR
adobeflash_playerMatch9.0.152.0
OR
adobeflash_playerMatch9.0.155.0
OR
adobeflash_playerMatch9.0.159.0
OR
adobeflash_playerMatch9.0.246.0
OR
adobeflash_playerMatch9.0.260.0
OR
adobeflash_playerMatch9.0.262.0
OR
adobeflash_playerMatch9.0.277.0
OR
adobeflash_playerMatch9.0.280
OR
adobeflash_playerMatch9.0.283.0
OR
adobeflash_playerMatch9.125.0
OR
adobeflash_playerMatch10
OR
adobeflash_playerMatch10.0.0.584
OR
adobeflash_playerMatch10.0.12.10
OR
adobeflash_playerMatch10.0.12.36
OR
adobeflash_playerMatch10.0.15.3
OR
adobeflash_playerMatch10.0.22.87
OR
adobeflash_playerMatch10.0.32.18
OR
adobeflash_playerMatch10.0.42.34
OR
adobeflash_playerMatch10.0.45.2
OR
adobeflash_playerMatch10.1
OR
adobeflash_playerMatch10.1.52.14.1
OR
adobeflash_playerMatch10.1.52.15
OR
adobeflash_playerMatch10.1.53.64
OR
adobeflash_playerMatch10.1.82.76
OR
adobeflash_playerMatch10.1.85.3
OR
adobeflash_playerMatch10.1.92.8
OR
adobeflash_playerMatch10.1.92.10
OR
adobeflash_playerMatch10.1.95.1
OR
adobeflash_playerMatch10.1.95.2
OR
adobeflash_playerMatch10.1.102.64
OR
adobeflash_playerMatch10.1.105.6
OR
adobeflash_playerMatch10.1.106.16
OR
adobeflash_playerMatch10.2.152
OR
adobeflash_playerMatch10.2.152.26
OR
adobeflash_playerMatch10.2.152.32
OR
adobeflash_playerMatch10.2.152.33
OR
adobeflash_playerMatch10.2.153.1
OR
adobeflash_playerMatch10.2.154.13
OR
adobeflash_playerMatch10.2.154.25
OR
adobeflash_playerMatch10.2.156.12
OR
adobeflash_playerMatch10.2.157.51
OR
adobeflash_playerMatch10.2.159.1
OR
adobeflash_playerMatch10.3.181.14
OR
adobeflash_playerMatch10.3.181.16
OR
adobeflash_playerMatch10.3.181.22
OR
adobeflash_playerMatch10.3.181.26
OR
adobeflash_playerMatch10.3.181.34
OR
adobeflash_playerMatch10.3.183.5
OR
adobeflash_playerMatch10.3.183.7
OR
adobeflash_playerMatch10.3.183.10
OR
adobeflash_playerMatch10.3.183.11
OR
adobeflash_playerMatch10.3.183.15
AND
microsoftwindows
Node
adobeflash_playerMatch11.0
OR
adobeflash_playerMatch11.0.1.152
OR
adobeflash_playerMatch11.0.1.153
OR
adobeflash_playerMatch11.1
OR
adobeflash_playerMatch11.1.102.55
OR
adobeflash_playerMatch11.1.102.62
OR
adobeflash_playerMatch11.1.102.63
AND
microsoftwindows
Node
adobeadobe_airRange3.1.0.488
OR
adobeadobe_airMatch1.0
OR
adobeadobe_airMatch1.0.1
OR
adobeadobe_airMatch1.1
OR
adobeadobe_airMatch1.5
OR
adobeadobe_airMatch1.5.1
OR
adobeadobe_airMatch1.5.2
OR
adobeadobe_airMatch1.5.3
OR
adobeadobe_airMatch1.5.3.9120
OR
adobeadobe_airMatch2.0.2
OR
adobeadobe_airMatch2.0.3
OR
adobeadobe_airMatch2.0.3.13070
OR
adobeadobe_airMatch2.0.4
OR
adobeadobe_airMatch2.6
OR
adobeadobe_airMatch2.7
OR
adobeadobe_airMatch2.7.0.1948
OR
adobeadobe_airMatch2.7.0.1953
OR
adobeadobe_airMatch2.7.1
OR
adobeadobe_airMatch2.7.1.19610
OR
adobeadobe_airMatch3.0.0.408
OR
adobeadobe_airMatch3.1.0.485
AND
microsoftwindows
VendorProductVersionCPE
adobeflash_player10.3.181.22cpe:/a:adobe:flash_player:10.3.181.22:::
adobeflash_player10.3.183.5cpe:/a:adobe:flash_player:10.3.183.5:::
adobeflash_player7.0.69.0cpe:/a:adobe:flash_player:7.0.69.0:::
adobeflash_player9.0.45.0cpe:/a:adobe:flash_player:9.0.45.0:::
adobeflash_player7.2cpe:/a:adobe:flash_player:7.2:::
adobeflash_player10.3.181.14cpe:/a:adobe:flash_player:10.3.181.14:::
adobeflash_player7.0.63cpe:/a:adobe:flash_player:7.0.63:::
adobeflash_player6cpe:/a:adobe:flash_player:6:::
adobeflash_player8.0.34.0cpe:/a:adobe:flash_player:8.0.34.0:::
adobeflash_player7.1cpe:/a:adobe:flash_player:7.1:::
Rows per page:
1-10 of 1061

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.044

Percentile

92.4%