VulnerabilityModified
CVE-2014-0504
Adobe Flash Player before 11.7.700.272 and 11.8.x through 12.0.x before 12.0.0.77 on Windows and OS X, and before 11.2.202.346 on Linux, allows attackers to read the clipboard via unspecified vectors.
MEDIUM 5.0EPSS 4.08%
Does this matter?
Lower severity and a low EPSS score (4.08%). Track it; it rarely justifies an emergency change on its own.
Description
Adobe Flash Player before 11.7.700.272 and 11.8.x through 12.0.x before 12.0.0.77 on Windows and OS X, and before 11.2.202.346 on Linux, allows attackers to read the clipboard via unspecified vectors.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 4.08% probability · 90th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- adobe/flash player
- Source
- psirt@adobe.com
References
- http://helpx.adobe.com/security/products/flash-player/apsb14-08.htmlVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00013.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00014.htmlMailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0289.htmlThird Party Advisory
- http://security.gentoo.org/glsa/glsa-201405-04.xmlThird Party Advisory
- http://helpx.adobe.com/security/products/flash-player/apsb14-08.htmlVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00013.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00014.htmlMailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0289.htmlThird Party Advisory
- http://security.gentoo.org/glsa/glsa-201405-04.xmlThird Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.