CVE-2017-3062

Description

Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free vulnerability in ActionScript2 when creating a getter/setter property. Successful exploitation could lead to arbitrary code execution.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
4.446

Associated Vulnerability

VulnerabilityOS Platform
Upgrade Adobe flash player 25.0.0.127 to latest versionWindows
Multiple vulnerabilities affected in Adobe Flash Player Plugin 25.0.0.127Windows
Multiple vulnerabilities affected in Adobe Flash Player PPAPI 25.0.0.127Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234