dangokyo

3 exploits Active since Jul 2015
CVE-2017-3000 NOMISEC MEDIUM WRITEUP
Adobe Flash Player < 24.0.0.221 - Information Disclosure
Adobe Flash Player versions 24.0.0.221 and earlier have a vulnerability in the random number generator used for constant blinding. Successful exploitation could lead to information disclosure.
8 stars
CVSS 6.5
CVE-2016-9079 NOMISEC HIGH WORKING POC
SVG Animation - Use After Free
A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild targeting Firefox and Tor Browser users on Windows. This vulnerability affects Firefox < 50.0.2, Firefox ESR < 45.5.1, and Thunderbird < 45.5.1.
7 stars
CVSS 7.5
CVE-2015-5119 NOMISEC CRITICAL WORKING POC
Adobe Flash Player ByteArray Use After Free
Use-after-free vulnerability in the ByteArray class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.296 and 14.x through 18.0.0.194 on Windows and OS X and 11.x through 11.2.202.468 on Linux allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted Flash content that overrides a valueOf function, as exploited in the wild in July 2015.
3 stars
CVSS 9.8