CVE-2012-0772

Description

An unspecified ActiveX control in Adobe Flash Player before 10.3.183.18 and 11.x before 11.2.202.228, and AIR before 3.2.0.2070, on Windows does not properly perform URL security domain checking, which allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors.

Risk Information

Base Score
9.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
19.496

Associated Vulnerability

VulnerabilityOS Platform
Upgrade Adobe Air 3.1.0.488 to latest versionWindows
Upgrade Adobe flash player 10 to latest versionWindows
Vulnerabilities CVE-2012-0772,CVE-2012-0773 are affected in Adobe AIR 3.1.0.488Windows
Multiple vulnerabilities affected in Adobe Flash Player Plugin 3Windows
Multiple vulnerabilities affected in Adobe Flash Player PPAPI 3Windows
Multiple Vulnerabilities are affected in Adobe AIR 1.0Windows
Multiple Vulnerabilities are affected in Adobe AIR 1.1Windows
Multiple Vulnerabilities are affected in Adobe AIR 1.5Windows
Multiple Vulnerabilities are affected in Adobe AIR 1.5.2Windows
Multiple Vulnerabilities are affected in Adobe AIR 1.5.3Windows
Multiple Vulnerabilities are affected in Adobe AIR 2.0.2Windows
Multiple Vulnerabilities are affected in Adobe AIR 2.0.3Windows
Multiple Vulnerabilities are affected in Adobe AIR 2.0.4Windows
Multiple Vulnerabilities are affected in Adobe AIR 2.6Windows
Multiple Vulnerabilities are affected in Adobe AIR 2.7Windows
Multiple Vulnerabilities are affected in Adobe AIR 2.7.1Windows
Multiple Vulnerabilities are affected in Adobe AIR 1.0.1Windows
Multiple Vulnerabilities are affected in Adobe AIR 1.5.1Windows
Multiple Vulnerabilities are affected in Adobe AIR 1.5.3.9120Windows
Multiple Vulnerabilities are affected in Adobe AIR 2.0.3.13070Windows
Multiple Vulnerabilities are affected in Adobe AIR 2.7.0.1948Windows
Multiple Vulnerabilities are affected in Adobe AIR 2.7.0.1953Windows
Multiple Vulnerabilities are affected in Adobe AIR 2.7.1.19610Windows
Multiple Vulnerabilities are affected in Adobe AIR 3.0.0.408Windows
Multiple Vulnerabilities are affected in Adobe AIR 3.1.0.485Windows
Multiple Vulnerabilities are affected in Adobe AIR 3.1.0.488Windows
Multiple Vulnerabilities are affected in Adobe AIR For Mac 1.0Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 1.5Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 1.1Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 1.5.1Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 1.5.2Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 1.5.3Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 1.0.1Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 1.5.3.9120Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 2.0.2Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 2.0.3Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 2.0.4Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 2.6Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 2.7Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 2.7.1Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 2.0.3.13070Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 2.7.0.1948Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 2.7.0.1953Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 2.7.1.19610Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 3.0.0.408Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 3.1.0.485Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 3.1.0.488Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234