Remote code execution vulnerability in Adobe Flash Player via System.setClipboard methodID: oval:org.secpod.oval:def:16508 | Date: (C)2014-01-08 (M)2022-10-10 |
Class: VULNERABILITY | Family: windows |
The host is installed with Adobe Flash Player 9.0.124.0 and earlier and is prone to remote code execution vulnerability. The flaw is present in the System.setClipboard method in ActionScript, which does not require user interaction to populate the clipboard. Successful exploitation could allows remote attackers to populate the clipboard with a URL.
Platform: |
Microsoft Windows Server 2016 |
Microsoft Windows 2000 |
Microsoft Windows XP |
Microsoft Windows Vista |
Microsoft Windows Server 2003 |
Microsoft Windows Server 2008 |
Microsoft Windows Server 2008 R2 |
Microsoft Windows 7 |
Microsoft Windows 10 |
Microsoft Windows 8 |
Microsoft Windows Server 2012 |
Microsoft Windows 8.1 |
Microsoft Windows Server 2012 R2 |
Product: |
Adobe Flash Player |
Adobe AIR |