CVE-2018-5002

CVE Published 2018-07-09
Related CWE(s) CWE-787: Out-of-bounds Write
Related Vendor(s) adobe, redhat
Related Product(s) enterprise_linux_workstation, enterprise_linux_server, flash_player, flash_player_desktop_runtime, enterprise_linux_desktop
Exploitation Reported (CISA KEV) 2022-05-23
CVSS 3 Base Score 9.8 (CRITICAL)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector NETWORK

Adobe Flash Player versions 29.0.0.171 and earlier have a Stack-based buffer overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

References