Vulnerability index

Browse CVEs

78 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Air MEDIUM 5.0
CVE-2015-3097EPSS 12%

Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160, Adobe AIR before 18.0.0.144, Adobe AIR SDK before 18.0.0.144, and Adobe…

Fix: after 17.0.0.172
Fix from $1,600 2015-06-10
Flash Player MEDIUM 5.0
CVE-2015-3092

Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 1…

Fix: after 17.0.0.144
Fix from $1,600 2015-05-13
Flash Player MEDIUM 5.0
CVE-2015-3091

Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 1…

Fix: after 17.0.0.144
Fix from $1,600 2015-05-13
Acrobat Reader MEDIUM 5.0
CVE-2015-3058EPSS 10%

Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to obtain sensitive information from process…

Patch available
Fix from $1,600 2015-05-13
Flash Player HIGH 7.8
CVE-2015-0310 KEVEPSS 15%

Adobe Flash Player before 13.0.0.262 and 14.x through 16.x before 16.0.0.287 on Windows and OS X and before 11.2.202.438 on Linux does not properly r…

Fix: 11.2.202.438 / 13.0.0.262+
Fix from $1,950 2015-01-23
Acrobat Reader MEDIUM 5.0
CVE-2014-8452EPSS 18%

Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow remote attackers to read arbitrary files via an XML ex…

Mitigation only
Fix from $1,600 2014-12-10
Acrobat MEDIUM 5.0
CVE-2014-8451EPSS 9%

An unspecified JavaScript API in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to obtain …

Mitigation only
Fix from $1,600 2014-12-10
Acrobat MEDIUM 5.0
CVE-2014-8448EPSS 9%

An unspecified JavaScript API in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to obtain …

Mitigation only
Fix from $1,600 2014-12-10
Flash Player MEDIUM 5.0
CVE-2014-8437

Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on Linux, Adobe AIR before 15.0.…

Fix: 11.2.202.418 / 13.0.0.252+
Fix from $1,600 2014-11-11
Digital Editions MEDIUM 5.0
CVE-2014-8068

Adobe Digital Editions (DE) 4 does not use encryption for transmission of data to adelogs.adobe.com, which allows remote attackers to obtain sensitiv…

Mitigation only
Fix from $1,600 2014-10-09
Acrobat Reader MEDIUM 5.0
CVE-2013-2737

A JavaScript API in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attackers to obtain sensitive infor…

Patch available
Fix from $1,600 2013-05-16
Flash Player MEDIUM 5.0
CVE-2013-0637EPSS 6%

Adobe Flash Player before 10.3.183.63 and 11.x before 11.6.602.168 on Windows, before 10.3.183.61 and 11.x before 11.6.602.167 on Mac OS X, before 10…

Fix: 3.6.0.597 / 3.6.0.599+
Fix from $1,600 2013-02-12
Coldfusion MEDIUM 5.3
CVE-2011-0737

Adobe ColdFusion 9.0.1 CHF1 and earlier allows remote attackers to obtain sensitive information via an id=- query to a .cfm file, which reveals the i…

Fix: after 9.0.1
Fix from $1,600 2011-02-01
Coldfusion MEDIUM 5.3
CVE-2011-0736

Adobe ColdFusion 9.0.1 CHF1 and earlier, when a web application is configured to use a DBMS, allows remote attackers to obtain potentially sensitive …

Fix: after 9.0.1
Fix from $1,600 2011-02-01
Adobe Air HIGH 7.1
CVE-2009-3951

Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 on Windows allows re…

Fix: after 10.0.32.18
Fix from $1,950 2009-12-10
Acrobat HIGH 8.8
CVE-2008-0655 KEVEPSS 37%

Multiple unspecified vulnerabilities in Adobe Reader and Acrobat before 8.1.2 have unknown impact and attack vectors.

Fix: 8.1.2+
Fix from $1,950 2008-02-07
Flash Player MEDIUM 6.8
CVE-2007-2022

Adobe Macromedia Flash Player 7 and 9, when used with Opera before 9.20 or Konqueror before 20070613, allows remote attackers to obtain sensitive inf…

Mitigation only
Fix from $1,600 2007-04-13
Coldfusion MEDIUM 5.0
CVE-2006-5858EPSS 13%

Adobe ColdFusion MX 7 through 7.0.2, and JRun 4, when run on Microsoft IIS, allows remote attackers to read arbitrary files, list directories, or rea…

Fix: after 7.0.2
Fix from $1,600 2006-12-31