cbcvebase.
CVE-2012-0772
published 2012-03-28

CVE-2012-0772: An unspecified ActiveX control in Adobe Flash Player before 10.3.183.18 and 11.x before 11.2.202.228, and AIR before 3.2.0.2070, on Windows does not properly…

PriorityP348critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
5.94%
92.4th percentile
An unspecified ActiveX control in Adobe Flash Player before 10.3.183.18 and 11.x before 11.2.202.228, and AIR before 3.2.0.2070, on Windows does not properly perform URL security domain checking, which allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors.

Affected

134 ranges· showing 25
VendorProductVersion rangeFixed in
adobeadobe_air<= 3.1.0.488
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeadobe_air
adobeflash_player<= 10.3.183.16
adobeflash_player
adobeflash_player
adobeflash_player
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.