CVE-2008-4820
published 2008-11-10CVE-2008-4820: Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player 9.0.124.0 and earlier on Windows allows attackers to obtain sensitive…
PriorityP429high7.1CVSS 2.0
AVNACMAuNCCINAN
EPSS
5.10%
91.5th percentile
Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player 9.0.124.0 and earlier on Windows allows attackers to obtain sensitive information via unknown vectors.
Affected
45 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | adobe_air | <= 1.5.2 | — |
| adobe | adobe_air | — | — |
| adobe | adobe_air | — | — |
| adobe | adobe_air | — | — |
| adobe | adobe_air | — | — |
| adobe | flash_player | <= 9.0.124.0 | — |
| adobe | flash_player | <= 10.0.32.18 | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-43v9-5jqv-2894: Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player 9
ghsa_unreviewed·2022-05-14
CVE-2008-4820 [HIGH] CWE-200 GHSA-43v9-5jqv-2894: Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player 9
Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player 9.0.124.0 and earlier on Windows allows attackers to obtain sensitive information via unknown vectors.
GHSA
GHSA-jw8f-j76p-rv4j: Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player before 10
ghsa_unreviewed·2022-05-02·CVSS 7.1
CVE-2009-3951 [HIGH] CWE-200 GHSA-jw8f-j76p-rv4j: Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player before 10
Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 on Windows allows remote attackers to obtain the names of local files via unknown vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-4820.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.apple.com/archives/security-announce//2008//Dec/msg00000.htmlhttp://secunia.com/advisories/33179http://secunia.com/advisories/33390http://sunsolve.sun.com/search/document.do?assetkey=1-26-248586-1http://support.apple.com/kb/HT3338http://support.avaya.com/elmodocs2/security/ASA-2009-020.htmhttp://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&DocumentOID=834256&poid=http://www.adobe.com/support/security/bulletins/apsb08-20.htmlhttp://www.securityfocus.com/bid/32129http://www.securitytracker.com/id?1021148http://www.us-cert.gov/cas/techalerts/TA08-350A.htmlhttp://www.vupen.com/english/advisories/2008/3444https://exchange.xforce.ibmcloud.com/vulnerabilities/46533http://lists.apple.com/archives/security-announce//2008//Dec/msg00000.htmlhttp://secunia.com/advisories/33179http://secunia.com/advisories/33390http://sunsolve.sun.com/search/document.do?assetkey=1-26-248586-1http://support.apple.com/kb/HT3338http://support.avaya.com/elmodocs2/security/ASA-2009-020.htmhttp://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&DocumentOID=834256&poid=http://www.adobe.com/support/security/bulletins/apsb08-20.htmlhttp://www.securityfocus.com/bid/32129http://www.securitytracker.com/id?1021148http://www.us-cert.gov/cas/techalerts/TA08-350A.htmlhttp://www.vupen.com/english/advisories/2008/3444https://exchange.xforce.ibmcloud.com/vulnerabilities/46533
2008-11-10
Published