CVE-2018-12825Adobe Flash Player vulnerability

8 documents8 sources
Severity
9.8CRITICALNVD
EPSS
1.3%
top 20.40%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 29
Latest updateMay 13

Description

Adobe Flash Player 30.0.0.134 and earlier have a security bypass vulnerability. Successful exploitation could lead to security mitigation bypass.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Patches

🔴Vulnerability Details

3
GHSA
GHSA-fwmp-493q-9xqx: Adobe Flash Player 302022-05-13
CVEList
CVE-2018-12825: Adobe Flash Player 302018-08-29
OSV
CVE-2018-12825: Adobe Flash Player 302018-08-29

💥Exploits & PoCs

1
Exploit-DB
Alumni Tracer SMS Notification - SQL Injection / Cross-Site Request Forgery2018-12-11

📋Vendor Advisories

1
Red Hat
flash-plugin: Security Mitigation Bypass vulnerability (APSB18-25)2018-08-14

🕵️Threat Intelligence

1
Zscaler
Zscaler protects against 3 new vulnerabilities for Adobe Flash Player | Zscaler

💬Community

1
Bugzilla
CVE-2018-12825 flash-plugin: Security Mitigation Bypass vulnerability (APSB18-25)2018-08-14
CVE-2018-12825 — Adobe Flash Player vulnerability | cvebase