7.8

CVE-2015-7662

Adobe Flash Player before 18.0.0.261 and 19.x before 19.0.0.245 on Windows and OS X and before 11.2.202.548 on Linux, Adobe AIR before 19.0.0.241, Adobe AIR SDK before 19.0.0.241, and Adobe AIR SDK & Compiler before 19.0.0.241 allow remote attackers to bypass intended access restrictions and write to files via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Adobe ≫ Flash Player Version <= 11.2.202.540
   Linux ≫ Linux Kernel Version -
Adobe ≫ Air Version <= 19.0.0.190
   Google ≫ Android
Adobe ≫ Flash Player Version <= 18.0.0.255
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Adobe ≫ Flash Player Version 19.0.0.185
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Adobe ≫ Flash Player Version 19.0.0.207
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Adobe ≫ Flash Player Version 19.0.0.226
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Adobe ≫ Air Sdk Version <= 19.0.0.213
   Apple ≫ iPhone OS
   Apple ≫ macOS X Version -
   Google ≫ Android
   Microsoft ≫ Windows Version -
Adobe ≫ Air Version <= 19.0.0.213
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.6% 0.88
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:C/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://rhn.redhat.com/errata/RHSA-2015-2024.html
https://security.gentoo.org/glsa/201511-02
http://lists.opensuse.org/opensuse-updates/2015-11/msg00071.html
http://rhn.redhat.com/errata/RHSA-2015-2023.html
http://www.securitytracker.com/id/1034111
https://helpx.adobe.com/security/products/flash-player/apsb15-28.html
Patch
Vendor Advisory
http://www.securityfocus.com/bid/77535