CVE-2018-15967

Severity
7.5HIGH
EPSS
9.5%
top 7.15%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 25
Latest updateMay 13

Description

Adobe Flash Player versions 30.0.0.154 and earlier have a privilege escalation vulnerability. Successful exploitation could lead to information disclosure.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages6 packages

NVDadobe/flash_player31.0.0.108
CVEListV5adobe/flash_player30.0.0.154 and earlier versions

🔴Vulnerability Details

2
GHSA
GHSA-5fr3-pj37-r3jj: Adobe Flash Player versions 302022-05-13
CVEList
CVE-2018-15967: Adobe Flash Player versions 302018-09-25

📋Vendor Advisories

1
Red Hat
flash-plugin: Information Disclosure vulnerability (APSB18-31)2018-09-11

💬Community

1
Bugzilla
CVE-2018-15967 flash-plugin: Information Disclosure vulnerability (APSB18-31)2018-09-11