Adobe

Flash Player

1084 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 4.56%
  • Veröffentlicht 09.10.2008 18:00:01
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Settings Manager in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to cause victims to unknowingly click on a link or dialog via access control dialogs disguised as normal graphical elements, as demonstrated by hijacking the cam...

  • EPSS 1.07%
  • Veröffentlicht 06.10.2008 18:00:10
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Adobe Flash Player 8.0.39.0 and earlier, and 9.x up to 9.0.115.0, allows remote attackers to bypass the allowScriptAccess parameter setting via a crafted SWF file with unspecified "Filter evasion" manipulations.

  • EPSS 2.62%
  • Veröffentlicht 29.08.2008 17:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The System.setClipboard method in ActionScript in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to populate the clipboard with a URL that is difficult to delete and does not require user interaction to populate the clipboard, as ex...

  • EPSS 89.43%
  • Veröffentlicht 09.04.2008 21:05:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code via a crafted SWF file with a negative Scene Count value, which passes a signed comparison, is used as an offset...

Exploit
  • EPSS 66.22%
  • Veröffentlicht 09.04.2008 21:05:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code via an SWF file with a modified DeclareFunction2 Actionscript tag, which prevents an object from being instantiated properly.

  • EPSS 30.11%
  • Veröffentlicht 09.04.2008 21:05:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, makes it easier for remote attackers to conduct DNS rebinding attacks via unknown vectors.

  • EPSS 30.8%
  • Veröffentlicht 02.04.2008 18:44:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Interaction error between Adobe Flash and multiple Universal Plug and Play (UPnP) services allow remote attackers to perform Cross-Site Request Forgery (CSRF) style attacks by using the Flash navigateToURL function to send a SOAP message to a UPnP co...

  • EPSS 31.5%
  • Veröffentlicht 04.01.2008 00:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Multiple cross-site scripting (XSS) vulnerabilities in Adobe Flash Player allow remote attackers to inject arbitrary web script or HTML via a crafted SWF file, related to "pre-generated SWF files" and Adobe Dreamweaver CS3 or Adobe Acrobat Connect. ...

  • EPSS 57.67%
  • Veröffentlicht 20.12.2007 01:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in Adobe Flash Player 9.0.48.0 and earlier might allow remote attackers to execute arbitrary code via unknown vectors, related to "input validation errors."

  • EPSS 46.43%
  • Veröffentlicht 20.12.2007 01:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Adobe Flash Player 9.x up to 9.0.48.0, 8.x up to 8.0.35.0, and 7.x up to 7.0.70.0 does not sufficiently restrict the interpretation and usage of cross-domain policy files, which makes it easier for remote attackers to conduct cross-domain and cross-s...