Vulnerability Details CVE-2008-3872
Adobe Flash Player 8.0.39.0 and earlier, and 9.x up to 9.0.115.0, allows remote attackers to bypass the allowScriptAccess parameter setting via a crafted SWF file with unspecified "Filter evasion" manipulations.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 77.0%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2008-3872
-
cpe:2.3:a:adobe:flash_player:8.0
-
cpe:2.3:a:adobe:flash_player:8.0.22.0
-
cpe:2.3:a:adobe:flash_player:8.0.24.0
-
cpe:2.3:a:adobe:flash_player:8.0.33.0
-
cpe:2.3:a:adobe:flash_player:8.0.34.0
-
cpe:2.3:a:adobe:flash_player:8.0.35.0
-
cpe:2.3:a:adobe:flash_player:8.0.39.0
-
cpe:2.3:a:adobe:flash_player:9.0
-
cpe:2.3:a:adobe:flash_player:9.0.112.0
-
cpe:2.3:a:adobe:flash_player:9.0.114.0
-
cpe:2.3:a:adobe:flash_player:9.0.115.0
-
cpe:2.3:a:adobe:flash_player:9.0.16
-
cpe:2.3:a:adobe:flash_player:9.0.16.0
-
cpe:2.3:a:adobe:flash_player:9.0.18d60
-
cpe:2.3:a:adobe:flash_player:9.0.20
-
cpe:2.3:a:adobe:flash_player:9.0.20.0
-
cpe:2.3:a:adobe:flash_player:9.0.28
-
cpe:2.3:a:adobe:flash_player:9.0.28.0
-
cpe:2.3:a:adobe:flash_player:9.0.31
-
cpe:2.3:a:adobe:flash_player:9.0.31.0
-
cpe:2.3:a:adobe:flash_player:9.0.45.0
-
cpe:2.3:a:adobe:flash_player:9.0.47.0
-
cpe:2.3:a:adobe:flash_player:9.0.48.0
-
cpe:2.3:a:adobe:flash_player:9.0.8.0
-
cpe:2.3:a:adobe:flash_player:9.0.9.0