CVE-2014-0517 is a vulnerability in Adobe Flash Player across Windows, OS X, and Linux, as well as Adobe AIR SDK and AIR SDK & Compiler, that allows attackers to bypass intended access restrictions through unspecified vectors. With a CVSS score of 7.5, this high-severity flaw indicates that it can be exploited remotely with low complexity, potentially leading to partial compromise of confidentiality, integrity, and availability. While the vulnerability is not listed in CISA's KEV catalog and has no known public exploits or significant community discussion, affected organizations should ensure their Adobe Flash Player and AIR installations are updated to patched versions.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 13.0, < 13.0.0.214CPE matchmatch criteria | cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* | ||
>= 11.0, < 11.2.202.359CPE matchmatch criteria | cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* | ||
< 13.0.0.111CPE matchmatch criteria | cpe:2.3:a:adobe:adobe_air:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.