Unknown
CVE-2014-0532
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)Unknown
Unknown
Unknown
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Cross-site scripting (XSS) vulnerability in Adobe Flash Player before 13.0.0.223 and 14.x before 14.0.0.125 on Windows and OS X and before 11.2.202.378 on Linux, Adobe AIR before 14.0.0.110, Adobe AIR SDK before 14.0.0.110, and Adobe AIR SDK & Compiler before 14.0.0.110 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2014-0531 and CVE-2014-0533.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- adobe air,
- adobe air 13.0.0.83,
- adobe air sdk,
- adobe air sdk 13.0.0.83,
- flash player,
- flash player 11.2.202.223,
- flash player 11.2.202.228,
- flash player 11.2.202.233,
- flash player 11.2.202.235,
- flash player 11.2.202.236,
- flash player 11.2.202.238,
- flash player 11.2.202.243,
- flash player 11.2.202.251,
- flash player 11.2.202.258,
- flash player 11.2.202.261,
- flash player 11.2.202.262,
- flash player 11.2.202.270,
- flash player 11.2.202.273,
- flash player 11.2.202.275,
- flash player 11.2.202.280,
- flash player 11.2.202.285,
- flash player 11.2.202.291,
- flash player 11.2.202.297,
- flash player 11.2.202.310,
- flash player 11.2.202.332,
- flash player 11.2.202.335,
- flash player 11.2.202.336,
- flash player 11.2.202.341,
- flash player 11.2.202.346,
- flash player 11.2.202.350,
- flash player 11.2.202.356,
- flash player 13.0.0.182,
- flash player 13.0.0.201,
- flash player 13.0.0.206
References
Advisory
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: