Lucene search

K
ubuntucveUbuntu.comUB:CVE-2012-0772
HistoryMar 28, 2012 - 12:00 a.m.

CVE-2012-0772

2012-03-2800:00:00
ubuntu.com
ubuntu.com
19

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.044

Percentile

92.4%

An unspecified ActiveX control in Adobe Flash Player before 10.3.183.18 and
11.x before 11.2.202.228, and AIR before 3.2.0.2070, on Windows does not
properly perform URL security domain checking, which allow attackers to
execute arbitrary code or cause a denial of service (memory corruption) via
unknown vectors.

Notes

Author Note
tyhicks Windows only - ActiveX

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.044

Percentile

92.4%