Lucene search

K
cveAdobeCVE-2015-5548
HistoryAug 14, 2015 - 1:59 a.m.

CVE-2015-5548

2015-08-1401:59:33
CWE-119
adobe
web.nvd.nist.gov
48
cve-2015-5548
adobe flash player
arbitrary code execution
denial of service
memory corruption
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.687

Percentile

98.0%

Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-5544, CVE-2015-5545, CVE-2015-5546, CVE-2015-5547, CVE-2015-5549, CVE-2015-5552, and CVE-2015-5553.

Affected configurations

Nvd
Node
adobeflash_playerRange18.0.0.209
AND
applemac_os_xMatch-
OR
microsoftwindowsMatch-
Node
adobeflash_playerRange11.2.202.491
AND
linuxlinux_kernelMatch-
Node
adobeairRange18.0.0.180
OR
adobeair_sdkRange18.0.0.180
OR
adobeair_sdk_\&_compilerRange18.0.0.180
VendorProductVersionCPE
adobeflash_playercpe:/a:adobe:flash_player::::

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.687

Percentile

98.0%