Lucene search

K
cveAdobeCVE-2015-8451
HistoryDec 10, 2015 - 6:00 a.m.

CVE-2015-8451

2015-12-1006:00:16
CWE-119
adobe
web.nvd.nist.gov
48
cve-2015-8451
adobe flash player
adobe air
memory corruption
arbitrary code execution
denial of service
nvd
vulnerability
cve

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

9.1

Confidence

High

EPSS

0.042

Percentile

92.4%

Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and OS X and before 11.2.202.554 on Linux, Adobe AIR before 20.0.0.204, Adobe AIR SDK before 20.0.0.204, and Adobe AIR SDK & Compiler before 20.0.0.204 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-8045, CVE-2015-8047, CVE-2015-8060, CVE-2015-8408, CVE-2015-8416, CVE-2015-8417, CVE-2015-8418, CVE-2015-8419, CVE-2015-8443, CVE-2015-8444, and CVE-2015-8455.

Affected configurations

Nvd
Node
adobeflash_playerRange11.2.202.548
AND
linuxlinux_kernel
Node
adobeairRange19.0.0.241
AND
applemac_os_x
OR
microsoftwindows
Node
adobeflash_playerRange18.0.0.261
OR
adobeflash_playerMatch19.0.0.185
OR
adobeflash_playerMatch19.0.0.207
OR
adobeflash_playerMatch19.0.0.226
OR
adobeflash_playerMatch19.0.0.245
AND
applemac_os_x
OR
microsoftwindows
Node
adobeair_sdkRange19.0.0.241
OR
adobeair_sdk_\&_compilerRange19.0.0.241
AND
appleiphone_os
OR
applemac_os_x
OR
googleandroid
OR
microsoftwindows
VendorProductVersionCPE
adobeflash_player*cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
linuxlinux_kernel*cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
adobeair*cpe:2.3:a:adobe:air:*:*:*:*:*:*:*:*
applemac_os_x*cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*
microsoftwindows*cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*
adobeflash_player19.0.0.185cpe:2.3:a:adobe:flash_player:19.0.0.185:*:*:*:*:*:*:*
adobeflash_player19.0.0.207cpe:2.3:a:adobe:flash_player:19.0.0.207:*:*:*:*:*:*:*
adobeflash_player19.0.0.226cpe:2.3:a:adobe:flash_player:19.0.0.226:*:*:*:*:*:*:*
adobeflash_player19.0.0.245cpe:2.3:a:adobe:flash_player:19.0.0.245:*:*:*:*:*:*:*
adobeair_sdk*cpe:2.3:a:adobe:air_sdk:*:*:*:*:*:*:*:*
Rows per page:
1-10 of 131

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

9.1

Confidence

High

EPSS

0.042

Percentile

92.4%