VDB

CVE-2015-8651

CVE-2015-8651 PUBLISHED KEV CVSS 8.800000190734863 HIGH

Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors.

EPSS 67.70% · 99.3th percentile

Risk Scores

CVSS 3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
67.70%
99.3th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSflashplugin-nonfree0, 11.2.202.310ubuntu1, 11.2.202.335ubuntu1

Timeline

  • Feb 12, 2013 VulnCheck KEV Exploitation
  • Dec 28, 2015 VulnCheck KEV Exploitation
  • Dec 28, 2015 PoC Published
  • Dec 28, 2015 CVE Published
  • Dec 31, 2015 VulnCheck KEV Exploitation
  • Jan 6, 2016 PoC Published
  • Mar 1, 2016 VulnCheck KEV Exploitation
  • Mar 14, 2016 PoC Published
  • Jul 7, 2016 PoC Published
  • Dec 6, 2016 VulnCheck KEV Exploitation
  • May 22, 2017 PoC Published
  • Jun 13, 2017 VulnCheck KEV Exploitation
Open in Interactive Console →
$ Console Community · 100/wk Open console ›