9.3
CVSSv2

CVE-2015-7659

Published: 11/11/2015 Updated: 01/07/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Adobe Flash Player prior to 18.0.0.261 and 19.x prior to 19.0.0.245 on Windows and OS X and prior to 11.2.202.548 on Linux, Adobe AIR prior to 19.0.0.241, Adobe AIR SDK prior to 19.0.0.241, and Adobe AIR SDK & Compiler prior to 19.0.0.241 allow malicious users to execute arbitrary code by leveraging an unspecified "type confusion" in the NetConnection object implementation.

Vulnerable Product Search on Vulmon Subscribe to Product

adobe flash_player

adobe air

adobe flash_player 19.0.0.207

adobe flash_player 19.0.0.185

adobe flash_player 19.0.0.226

adobe air_sdk_\\&_compiler

adobe air_sdk

Vendor Advisories

Adobe Flash Player before 1800261 and 19x before 1900245 on Windows and OS X and before 112202548 on Linux, Adobe AIR before 1900241, Adobe AIR SDK before 1900241, and Adobe AIR SDK & Compiler before 1900241 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion" in the NetConnection object imp ...