CVE-2008-4503

Description

The Settings Manager in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to cause victims to unknowingly click on a link or dialog via access control dialogs disguised as normal graphical elements, as demonstrated by hijacking the camera or microphone, and related to clickjacking.

Risk Information

Base Score
7.3
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
EPSS Score
Exploitation Probability
8.732

Associated Vulnerability

VulnerabilityOS Platform
Upgrade Adobe flash player 9.0.124.0 to latest versionWindows
Vulnerabilities CVE-2008-4401,CVE-2008-4503 are affected in Adobe Flash Player Plugin 9.0.124.0Windows
Vulnerabilities CVE-2008-4401,CVE-2008-4503 are affected in Adobe Flash Player PPAPI 9.0.124.0Windows
Multiple Vulnerabilities are affected in Adobe Flash Player 11 ActiveX 9.0.124.0Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234