All CVEs View on NVD
CVE-2018-15982
HIGH7.8
CISA KEV
Published 2019-01-18 · Updated 2026-08-13 · Source psirt@adobe.com
Description
Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability. Successful exploitation could lead to arbitrary code execution.
CVSS vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CWE-416CWE-416
CISA Known-Exploited Vulnerability
Product: Adobe — Flash Player
Name: Adobe Flash Player Use-After-Free Vulnerability
Date added: 2022-02-15 · Due: 2022-08-15
USED IN RANSOMWARE
Required action: The impacted product is end-of-life and should be disconnected if still in use.
References
- http://www.securityfocus.com/bid/106116
- https://access.redhat.com/errata/RHSA-2018:3795
- https://helpx.adobe.com/security/products/flash-player/apsb18-42.html
- https://www.exploit-db.com/exploits/46051/
- http://www.securityfocus.com/bid/106116
- https://access.redhat.com/errata/RHSA-2018:3795
- https://helpx.adobe.com/security/products/flash-player/apsb18-42.html
- https://www.exploit-db.com/exploits/46051/

