Security Vulnerabilities in APSA18-01 for Adobe Flash Player

description-logoDescription

The vulnerabilities in the following products could cause the system to become vulnerable to malicious security attack: Adobe Flash Player Active X plug-in for Internet Explorer

Analysis

A critical vulnerability (CVE-2018-4878) exists in Adobe Flash Player 28.0.0.137 and earlier versions. Successful exploitation could potentially allow an attacker to take control of the affected system.Adobe is aware of a report that an exploit for CVE-2018-4878 exists in the wild, and is being used in limited, targeted attacks against Windows users. These attacks leverage Office documents with embedded malicious Flash content distributed via email.Adobe addressed this vulnerability in version 28.0.0.161, released on February 6, 2018. See thisbulletinfor more details.

affected-products-logoAffected Applications

Adobe Flash Player Active X plug-in for Internet Explorer

Version Updates

Date Version Status Detail
2019-09-11 1.00194
Modified
Adobe Flash Player Active X plug-in for Internet Explorer
2019-01-08 1.00178
Modified
Adobe Flash Player Active X plug-in for Internet Explorer
2018-10-09 1.00172
New
Adobe Flash Player Active X plug-in for Internet Explorer