CVE-2018-4878

Adobe Flash Player Use-After-Free Vulnerability

7.8
CVSS 3.1
89.5 %
EPSS (current)
2021-11-03
KEV addition
Yes
Ransomware

Timeline

Publication, first public exploit and KEV addition on a day axis.

Key facts

Vendor / product: Adobe / Flash Player

Published: 2018-02-06 · Due (CISA): 2022-05-03

CWE: CWE-416 · EU list: no

Exploit references (metadata only)

SourceReferenceTitleDate
exploitdb44745Flash ActiveX 28.0.0.137 - Code Execution (2)2016-02-13
exploitdb44744Flash ActiveX 28.0.0.137 - Code Execution (1)2016-02-16
exploitdb44412Adobe Flash < 28.0.0.161 - Use-After-Free2018-04-06

References only — no downloads or instructions.

Sources