Lucene search

K
cveAdobeCVE-2014-0518
HistoryMay 14, 2014 - 11:13 a.m.

CVE-2014-0518

2014-05-1411:13:04
CWE-264
adobe
web.nvd.nist.gov
40
cve-2014-0518
adobe flash player
adobe air sdk
access restrictions
security vulnerability

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.4

Confidence

Low

EPSS

0.01

Percentile

83.4%

Adobe Flash Player before 13.0.0.214 on Windows and OS X and before 11.2.202.359 on Linux, Adobe AIR SDK before 13.0.0.111, and Adobe AIR SDK & Compiler before 13.0.0.111 allow attackers to bypass intended access restrictions via unspecified vectors, a different vulnerability than CVE-2014-0517, CVE-2014-0519, and CVE-2014-0520.

Affected configurations

Nvd
Node
adobeflash_playerRange13.013.0.0.214
AND
applemac_os_x
OR
microsoftwindowsMatch-
Node
adobeflash_playerRange11.011.2.202.359
AND
linuxlinux_kernel
Node
adobeadobe_airRange<13.0.0.111

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.4

Confidence

Low

EPSS

0.01

Percentile

83.4%