Junglewise Threat Intelligence

CVE-2015-0311: Adobe Flash Player Remote Code Execution Vulnerability

CVE-2015-0311 · Severity: critical · CVSS 9.8 · Exploited in the wild · Published 2022-04-13

Technologies: Adobe Flash Player, Adobe AIR. Vendors: Adobe.

Executive brief

An unspecified vulnerability in Adobe Flash Player allows remote attackers to execute arbitrary code via unknown vectors. The vulnerability was actively exploited in the wild as a zero-day prior to patching.

Affected products

  • Adobe Flash Player through 13.0.0.262, 14.x, 15.x, 16.x through 16.0.0.287 (Windows/OS X); through 11.2.202.438 (Linux)

Timeline

  • 2015-01: exploited: Exploited in the wild in January 2015.
  • 2022-04-13: kev added: Added to CISA Known Exploited Vulnerabilities Catalog.

Related threats