Exploitation Summary
EIP tracks 1 public exploit for CVE-2018-4936. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit is a fuzzed SWF file that triggers a heap overflow in Adobe Flash Player when playing a sound, leading to potential remote code execution. The PoC is noted to be unreliable but works best in standalone Flash Player and Microsoft Edge.
Description
Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable Heap Overflow vulnerability. Successful exploitation could lead to information disclosure.
Exploits (1)
This exploit is a fuzzed SWF file that triggers a heap overflow in Adobe Flash Player when playing a sound, leading to potential remote code execution. The PoC is noted to be unreliable but works best in standalone Flash Player and Microsoft Edge.
References (6)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N