Adobe Flash Player是美国奥多比(Adobe)公司的一款跨平台、基于浏览器的多媒体播放器产品。该产品支持跨屏幕和浏览器查看应用程序、内容和视频。 Adobe Flash Player中存在释放后重用漏洞。远程攻击者可利用该漏洞执行代码,控制系统。以下版本受到影响:基于Windows和Macintosh平台的Adobe Flash Player Desktop Runtime 28.0.0.137及之前的版本,基于Windows、Macintosh、Linux和Chrome OS平台的Ado
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Adobe Flash Player before 28.0.0.161 | Adobe Flash Player before 28.0.0.161 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | 备忘:flash挂马工具备份 CVE-2018-4878 | https://github.com/ydl555/CVE-2018-4878- | POC Details |
| 2 | None | https://github.com/mdsecactivebreach/CVE-2018-4878 | POC Details |
| 3 | Aggressor Script to just launch IE driveby for CVE-2018-4878 | https://github.com/hybridious/CVE-2018-4878 | POC Details |
| 4 | Aggressor Script to launch IE driveby for CVE-2018-4878 | https://github.com/vysecurity/CVE-2018-4878 | POC Details |
| 5 | CVE-2018-4878 样本 | https://github.com/KathodeN/CVE-2018-4878 | POC Details |
| 6 | Flash Exploit Poc | https://github.com/SyFi/CVE-2018-4878 | POC Details |
| 7 | CVE-2018-4878 flash 0day | https://github.com/ydl555/CVE-2018-4878 | POC Details |
| 8 | Metasploit module for CVE-2018-4878 | https://github.com/B0fH/CVE-2018-4878 | POC Details |
| 9 | None | https://github.com/Yable/CVE-2018-4878 | POC Details |
| 10 | 软件系统安全结课作业:[漏洞复现] CVE-2018-4878 Flash 0day | https://github.com/HuanWoWeiLan/SoftwareSystemSecurity-2019 | POC Details |
| 11 | None | https://github.com/lvyoshino/CVE-2018-4878 | POC Details |
| 12 | Aggressor Script to just launch IE driveby for CVE-2018-4878 | https://github.com/demonsec666/CVE-2018-4878 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2015-3618 | Nagios Business Process Intelligence 跨站脚本漏洞 | |
| CVE-2018-6569 | West Wind Web Server 安全漏洞 | |
| CVE-2018-6654 | Grammarly extension for Chrome 安全漏洞 | |
| CVE-2018-6466 | WordPress flickrRSS插件跨站脚本漏洞 | |
| CVE-2018-6469 | WordPress flickrRSS插件跨站脚本漏洞 | |
| CVE-2018-6468 | WordPress flickrRSS插件跨站脚本漏洞 | |
| CVE-2018-6467 | WordPress flickrRSS插件跨站请求伪造漏洞 | |
| CVE-2018-6656 | Z-BlogPHP 跨站请求伪造漏洞 | |
| CVE-2015-4400 | Ring video doorbells 安全漏洞 | |
| CVE-2015-3619 | Joomla! VirtueMart组件跨站脚本漏洞 | |
| CVE-2016-7394 | Tiki Wiki CMS Groupware 跨站脚本漏洞 | |
| CVE-2014-5282 | Docker 安全漏洞 | |
| CVE-2014-5280 | boot2docker 安全漏洞 | |
| CVE-2014-5279 | boot2docker 安全漏洞 | |
| CVE-2018-6389 | WordPress 安全漏洞 | |
| CVE-2017-17663 | thttpd和mini_httpd 缓冲区错误漏洞 | |
| CVE-2018-6758 | Unbit uWSGI 缓冲区错误漏洞 | |
| CVE-2016-3957 | web2py 安全漏洞 | |
| CVE-2016-3954 | web2py 安全漏洞 | |
| CVE-2016-3953 | web2py sample Web应用程序 |
Showing top 20 of 52 CVEs. View all on vendor page → →
No comments yet