CVE-2017-2995
—CVSS 3.1
8.8 high
EPSS
6%p93
Published
()
Modified
Description
Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable type confusion vulnerability related to the MessageChannel class. Successful exploitation could lead to arbitrary code execution.
- Vendors
- adobe
- Products
- flash player, flash player desktop runtime
- Weakness
- CWE-843
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.