CVE-2014-0580Adobe Flash Player vulnerability

CWE-2645 documents5 sources
Severity
10.0CRITICALNVD
EPSS
2.7%
top 14.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 10
Latest updateMay 14

Description

Adobe Flash Player before 13.0.0.259 and 14.x through 16.x before 16.0.0.235 on Windows and OS X and before 11.2.202.425 on Linux allows remote attackers to bypass the Same Origin Policy via unspecified vectors.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

NVDadobe/flash_player1313.0.0.259+3

🔴Vulnerability Details

2
GHSA
GHSA-x683-qx37-4487: Adobe Flash Player before 132022-05-14
OSV
CVE-2014-0580: Adobe Flash Player before 132014-12-10

📋Vendor Advisories

1
Red Hat
flash-plugin: Same-Origin-Policy bypass flaw (APSB14-27)2014-12-09

💬Community

1
Bugzilla
CVE-2014-0580 flash-plugin: Same-Origin-Policy bypass flaw (APSB14-27)2014-12-10