Lucene search

K
cveAdobeCVE-2015-5549
HistoryAug 14, 2015 - 1:59 a.m.

CVE-2015-5549

2015-08-1401:59:34
CWE-119
adobe
web.nvd.nist.gov
43
cve-2015-5549
adobe flash player
adobe air
code execution
memory corruption
security vulnerability

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.687

Percentile

98.0%

Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-5544, CVE-2015-5545, CVE-2015-5546, CVE-2015-5547, CVE-2015-5548, CVE-2015-5552, and CVE-2015-5553.

Affected configurations

Nvd
Node
adobeflash_playerRange18.0.0.209
AND
applemac_os_xMatch-
OR
microsoftwindowsMatch-
Node
adobeflash_playerRange11.2.202.491
AND
linuxlinux_kernelMatch-
Node
adobeairRange18.0.0.180
OR
adobeair_sdkRange18.0.0.180
OR
adobeair_sdk_\&_compilerRange18.0.0.180
VendorProductVersionCPE
adobeflash_playercpe:/a:adobe:flash_player::::

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.687

Percentile

98.0%