PT-2009-6166 · Adobe · Air+1

Bing Liu

+2

·

Published

2009-12-10

·

Updated

2018-10-30

·

CVE-2009-3951

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Adobe Flash Player versions prior to 10.0.42.34 Adobe AIR versions prior to 1.5.3
Description The issue allows remote attackers to obtain the names of local files via unknown vectors. This is due to an incomplete fix for a previous issue.
Recommendations For Adobe Flash Player versions prior to 10.0.42.34, update to version 10.0.42.34 or later. For Adobe AIR versions prior to 1.5.3, update to version 1.5.3 or later.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-3951

Affected Products

Air
Flash Player