CVE-2008-3873

Description

The System.setClipboard method in ActionScript in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to populate the clipboard with a URL that is difficult to delete and does not require user interaction to populate the clipboard, as exploited in the wild in August 2008.

Risk Information

Base Score
5.3
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
EPSS Score
Exploitation Probability
5.143

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities affected in Adobe Flash Player 11 ActiveX 9.0.114.0Windows
Multiple vulnerabilities affected in Adobe Flash Player ActiveX 9.0.114.0Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234