Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2016-1014

Description

Untrusted search path vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows local users to gain privileges via a Trojan horse resource in an unspecified directory.

POC

Reference

- http://packetstormsecurity.com/files/137532/Adobe-Flash-Player-DLL-Hijacking.html

- http://seclists.org/fulldisclosure/2016/Jun/39

Github

No PoCs found on GitHub currently.