CVE-2017-3085
Severity
7.4HIGH
EPSS
0.8%
top 25.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 11
Latest updateMay 13
Description
Adobe Flash Player versions 26.0.0.137 and earlier have a security bypass vulnerability that leads to information disclosure when performing URL redirect.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:NExploitability: 2.8 | Impact: 4.0
Affected Packages6 packages
Also affects: Enterprise Linux 6.0
Patches
🔴Vulnerability Details
3📋Vendor Advisories
1Red Hat
▶
💬Community
1Bugzilla▶
CVE-2017-3085 flash-plugin: Information Disclosure via Security Bypass issue fixed in APSB17-23↗2017-08-09