CVE-2019-8075: Insufficient data validation in Flash
Adobe Flash Player version 32.0.0.192 and earlier versions have a Same Origin Policy Bypass vulnerability. Successful exploitation could lead to Information Disclosure in the context of the current user.
Credit
Affected Software
Remediation
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2020-16018
- CVE-2020-16019
- CVE-2020-16020
- CVE-2020-16021
- CVE-2020-16022
- CVE-2020-16015
- CVE-2020-16014
- CVE-2020-16023
- CVE-2020-16024
- CVE-2020-16025
- CVE-2020-16045
- CVE-2020-16026
- CVE-2020-16027
- CVE-2020-16028
- CVE-2020-16029
- CVE-2020-16030
- CVE-2020-16031
- CVE-2020-16032
- CVE-2020-16033
- CVE-2020-16034
- CVE-2020-16035
- CVE-2020-16012
- CVE-2020-16036
Frequently Asked Questions
What is the vulnerability ID for this Adobe Flash Player vulnerability?
The vulnerability ID for this Adobe Flash Player vulnerability is CVE-2019-8075.
What is the severity of CVE-2019-8075?
The severity of CVE-2019-8075 is high with a CVSS score of 7.5.
What is the affected software?
The affected software includes Adobe Flash Player version 32.0.0.192 and earlier versions.
What is the impact of the vulnerability?
Successful exploitation of CVE-2019-8075 could lead to information disclosure in the context of the current user.
Are there any fixes or patches available for CVE-2019-8075?
Yes, Adobe has released a security bulletin (APSB19-30) with patches to address the vulnerability. It is recommended to update to version 32.0.0.207 of Adobe Flash Player.