Air Desktop Runtime

Vendor:

First CVE: Oct 15, 2014 · Active for 11 years

88
Total CVEs
More Total CVEs than 99% of tracked products
44.0
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
8.9
Avg CVSS
Higher Avg CVSS than 82% of tracked products
3.4%
KEV Rate
Higher KEV Rate than 97% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Air Desktop Runtime over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 15, 2014
11 years ago
Most Recent CVE
Jun 16, 2016
3,690 days ago

CVE Severity & Scoring

Air Desktop Runtime88 CVEs
All CVEs352,294 CVEs
HighCritical
Attack Vector
Local1 (1.1%)
Network85 (96.6%)
Unknown2 (2.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low86 (97.7%)
High0 (0.0%)
Unknown2 (2.3%)
User Interaction
None7 (8.0%)
Unknown2 (2.3%)
Required79 (89.8%)
Privileges Required
Low1 (1.1%)
High0 (0.0%)
None85 (96.6%)
Unknown2 (2.3%)

Top CVEs

Signals from CVEs in this product scope (88 CVEs).

88 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0
Feb 10, 20168.892YESYES
Integer overflow in Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on Linux, Adobe AIR before 15.0.0.293, Adob
Oct 15, 20149.391NOYES
Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors, as ex
Apr 7, 20169.878YESNO
Integer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176,
Mar 12, 20168.871YESNO
Heap-based buffer overflow in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0
Feb 10, 20168.854NOYES
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0
Feb 10, 20168.851NOYES
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers t
Apr 9, 20168.849NOYES
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before
Mar 12, 20168.849NOYES
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers t
Apr 9, 20168.848NOYES
Heap-based buffer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21
Mar 12, 20168.848NOYES

Exploit Exposure

Signals from CVEs in this product scope (88 CVEs).

CISA KEV
3 CVEs
3.4% of CVEs· 97th percentile
Metasploit
1 CVE
1.1% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
16 CVEs
18.2% of CVEs· 89th percentile

Social Chatter

Signals from CVEs in this product scope (88 CVEs).

Media Mentions

Signals from CVEs in this product scope (88 CVEs).

Top CNAs Publishing CVEs For Air Desktop Runtime

Top CWEs

Versions

No cataloged versions.