CVE-2015-0301 is a critical vulnerability affecting Adobe Flash Player, Adobe AIR, Adobe AIR SDK, and Adobe AIR SDK & Compiler across Windows, OS X, Linux, and Android platforms. The flaw stems from improper file validation, leading to unspecified impact and attack vectors. With a CVSS score of 10.0, this vulnerability is highly severe, allowing unauthenticated attackers to achieve complete compromise of confidentiality, integrity, and availability over a network with low attack complexity. While there is no evidence of active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered some community discussion and media coverage, indicating awareness within the cybersecurity landscape.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 15.0.0.356CPE matchmatch criteria | cpe:2.3:a:adobe:adobe_air_sdk_and_compiler:*:*:*:*:*:*:*:* | ||
<= 15.0.0.356CPE matchmatch criteria | cpe:2.3:a:adobe:adobe_air:*:*:*:*:*:android:*:* | ||
<= 15.0.0.356CPE matchmatch criteria | cpe:2.3:a:adobe:adobe_air:*:*:*:*:*:*:*:* | ||
<= 15.0.0.356CPE matchmatch criteria | cpe:2.3:a:adobe:adobe_air_sdk:*:*:*:*:*:*:*:* | ||
11.2.202.425CPE matchmatch criteria | cpe:2.3:a:adobe:flash_player:11.2.202.425:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.