Executive brief
An unspecified vulnerability in Adobe Flash Player allows remote attackers to execute arbitrary code or cause a denial of service via crafted SWF content. The vulnerability was notably exploited in the wild using malicious SWF content embedded within Microsoft Word documents.
Affected products
- Adobe Flash Player before 11.3.300.271 on Windows and Mac OS X; before 11.2.202.238 on Linux
Timeline
- 2012-08-14: advisory: Adobe APSB12-18 advisory published
- 2012-08-01: exploited: Exploited in the wild in August 2012 via Word documents
- 2022-03-03: kev added: Added to CISA Known Exploited Vulnerabilities Catalog