CVE-2010-2214

Adobe Flash Player before 9.0.280 and 10.x before 10.1.82.76, and Adobe AIR before 2.0.3, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-0209, CVE-2010-2213, and CVE-2010-2216.

Published: 2010-08-11 Last update: 2026-04-29 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2010-2214 is rated High Risk (72.3/100): CVSS Critical severity, with high exploitation likelihood (EPSS 4.59%, 90th percentile). Core evidence: EPSS ranks this CVE among the most likely to be exploited in the near term. EPSS rose +3.50% over the last day, indicating growing attacker interest. Mandatory action: High exploitation likelihood—assess exposure and prioritize remediation.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Exploit prediction scoring system (EPSS) score for CVE-2010-2214

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-15 1.09% 4.59% +3.50%
2 2025-11-04 1.51% 1.09% -0.42%
3 2025-03-30 1.51%

Full EPSS history (7 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2010-2214

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
9.3 2.0 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:M)
Exploitation needs some favorable conditions, but not exceptional ones.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:C)
Complete confidentiality impact.
Integrity impact (I:C)
Complete integrity impact.
Availability impact (A:C)
Complete availability impact.
8.6 10.0 [email protected]

Weakness enumeration for CVE-2010-2214

OS Trackers for CVE-2010-2214

vendor priority summary link
gentoo normal CVE-2010-2214: 1 GLSA(s) (201101-09), 1 atom(s) (www-plugins/adobe-flash); latest impact normal. https://bugs.gentoo.org/buglist.cgi?quicksearch=CVE-2010-2214
redhat critical https://access.redhat.com/security/cve/CVE-2010-2214
ubuntu medium CVE-2010-2214 medium priority: Ubuntu including 2 source packages (adobe-flashplugin, flashplugin-nonfree), 12 status rows across 6 suites (dapper, hardy, jaunty, karmic, lucid, upstream): released 10, DNE 1, ignored 1. https://ubuntu.com/security/CVE-2010-2214

Affected software / configurations for CVE-2010-2214

Vendor Product Version Raw CPE
adobe adobe_air cpe:2.3:a:adobe:adobe_air:*:*:*:*:*:*:*:*
adobe adobe_air 1.0 cpe:2.3:a:adobe:adobe_air:1.0:*:*:*:*:*:*:*
adobe adobe_air 1.0.1 cpe:2.3:a:adobe:adobe_air:1.0.1:*:*:*:*:*:*:*
adobe adobe_air 1.5 cpe:2.3:a:adobe:adobe_air:1.5:*:*:*:*:*:*:*
adobe adobe_air 1.5.1 cpe:2.3:a:adobe:adobe_air:1.5.1:*:*:*:*:*:*:*
adobe adobe_air 1.5.3 cpe:2.3:a:adobe:adobe_air:1.5.3:*:*:*:*:*:*:*
adobe adobe_air 1.5.3.9120 cpe:2.3:a:adobe:adobe_air:1.5.3.9120:*:*:*:*:*:*:*
adobe flash_player cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
adobe flash_player <= 10.1.53.64 cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
adobe flash_player 7.0 cpe:2.3:a:adobe:flash_player:7.0:*:*:*:*:*:*:*
adobe flash_player 7.0.1 cpe:2.3:a:adobe:flash_player:7.0.1:*:*:*:*:*:*:*
adobe flash_player 7.0.25 cpe:2.3:a:adobe:flash_player:7.0.25:*:*:*:*:*:*:*
adobe flash_player 7.0.63 cpe:2.3:a:adobe:flash_player:7.0.63:*:*:*:*:*:*:*
adobe flash_player 7.1.1 cpe:2.3:a:adobe:flash_player:7.1.1:*:*:*:*:*:*:*
adobe flash_player 7.2 cpe:2.3:a:adobe:flash_player:7.2:*:*:*:*:*:*:*
adobe flash_player 8.0 cpe:2.3:a:adobe:flash_player:8.0:*:*:*:*:*:*:*
adobe flash_player 8.0.22.0 cpe:2.3:a:adobe:flash_player:8.0.22.0:*:*:*:*:*:*:*
adobe flash_player 8.0.33.0 cpe:2.3:a:adobe:flash_player:8.0.33.0:*:*:*:*:*:*:*
adobe flash_player 8.0.34.0 cpe:2.3:a:adobe:flash_player:8.0.34.0:*:*:*:*:*:*:*
adobe flash_player 8.0.35.0 cpe:2.3:a:adobe:flash_player:8.0.35.0:*:*:*:*:*:*:*
adobe flash_player 8.0.39.0 cpe:2.3:a:adobe:flash_player:8.0.39.0:*:*:*:*:*:*:*
adobe flash_player 8.0.42.0 cpe:2.3:a:adobe:flash_player:8.0.42.0:*:*:*:*:*:*:*
adobe flash_player 9.0 cpe:2.3:a:adobe:flash_player:9.0:*:*:*:*:*:*:*
adobe flash_player 9.0.16 cpe:2.3:a:adobe:flash_player:9.0.16:*:*:*:*:*:*:*
adobe flash_player 9.0.18d60 cpe:2.3:a:adobe:flash_player:9.0.18d60:*:*:*:*:*:*:*
adobe flash_player 9.0.20 cpe:2.3:a:adobe:flash_player:9.0.20:*:*:*:*:*:*:*
adobe flash_player 9.0.20.0 cpe:2.3:a:adobe:flash_player:9.0.20.0:*:*:*:*:*:*:*
adobe flash_player 9.0.28 cpe:2.3:a:adobe:flash_player:9.0.28:*:*:*:*:*:*:*
adobe flash_player 9.0.28.0 cpe:2.3:a:adobe:flash_player:9.0.28.0:*:*:*:*:*:*:*
adobe flash_player 9.0.31 cpe:2.3:a:adobe:flash_player:9.0.31:*:*:*:*:*:*:*
adobe flash_player 9.0.31.0 cpe:2.3:a:adobe:flash_player:9.0.31.0:*:*:*:*:*:*:*
adobe flash_player 9.0.45.0 cpe:2.3:a:adobe:flash_player:9.0.45.0:*:*:*:*:*:*:*
adobe flash_player 9.0.47.0 cpe:2.3:a:adobe:flash_player:9.0.47.0:*:*:*:*:*:*:*
adobe flash_player 9.0.48.0 cpe:2.3:a:adobe:flash_player:9.0.48.0:*:*:*:*:*:*:*
adobe flash_player 9.0.112.0 cpe:2.3:a:adobe:flash_player:9.0.112.0:*:*:*:*:*:*:*
adobe flash_player 9.0.114.0 cpe:2.3:a:adobe:flash_player:9.0.114.0:*:*:*:*:*:*:*
adobe flash_player 9.0.115.0 cpe:2.3:a:adobe:flash_player:9.0.115.0:*:*:*:*:*:*:*
adobe flash_player 9.0.124.0 cpe:2.3:a:adobe:flash_player:9.0.124.0:*:*:*:*:*:*:*
adobe flash_player 9.0.125.0 cpe:2.3:a:adobe:flash_player:9.0.125.0:*:*:*:*:*:*:*
adobe flash_player 9.0.151.0 cpe:2.3:a:adobe:flash_player:9.0.151.0:*:*:*:*:*:*:*
adobe flash_player 9.0.152.0 cpe:2.3:a:adobe:flash_player:9.0.152.0:*:*:*:*:*:*:*
adobe flash_player 9.0.159.0 cpe:2.3:a:adobe:flash_player:9.0.159.0:*:*:*:*:*:*:*
adobe flash_player 9.0.246.0 cpe:2.3:a:adobe:flash_player:9.0.246.0:*:*:*:*:*:*:*
adobe flash_player 9.0.260.0 cpe:2.3:a:adobe:flash_player:9.0.260.0:*:*:*:*:*:*:*
adobe flash_player 9.125.0 cpe:2.3:a:adobe:flash_player:9.125.0:*:*:*:*:*:*:*
adobe flash_player 10.0.0.584 cpe:2.3:a:adobe:flash_player:10.0.0.584:*:*:*:*:*:*:*
adobe flash_player 10.0.12.10 cpe:2.3:a:adobe:flash_player:10.0.12.10:*:*:*:*:*:*:*
adobe flash_player 10.0.12.36 cpe:2.3:a:adobe:flash_player:10.0.12.36:*:*:*:*:*:*:*
adobe flash_player 10.0.15.3 cpe:2.3:a:adobe:flash_player:10.0.15.3:*:*:*:*:*:*:*
adobe flash_player 10.0.22.87 cpe:2.3:a:adobe:flash_player:10.0.22.87:*:*:*:*:*:*:*
adobe flash_player 10.0.32.18 cpe:2.3:a:adobe:flash_player:10.0.32.18:*:*:*:*:*:*:*
adobe flash_player 10.0.42.34 cpe:2.3:a:adobe:flash_player:10.0.42.34:*:*:*:*:*:*:*
adobe flash_player 10.0.45.2 cpe:2.3:a:adobe:flash_player:10.0.45.2:*:*:*:*:*:*:*
adobe flash_player 10.1.52.14.1 cpe:2.3:a:adobe:flash_player:10.1.52.14.1:*:*:*:*:*:*:*
adobe flash_player 10.1.52.15 cpe:2.3:a:adobe:flash_player:10.1.52.15:*:*:*:*:*:*:*
adobe flash_player_for_linux 9.0.31 cpe:2.3:a:adobe:flash_player_for_linux:9.0.31:*:*:*:*:*:*:*
adobe flash_player_for_linux 9.0.48.0 cpe:2.3:a:adobe:flash_player_for_linux:9.0.48.0:*:*:*:*:*:*:*
adobe flash_player_for_linux 9.0.115.0 cpe:2.3:a:adobe:flash_player_for_linux:9.0.115.0:*:*:*:*:*:*:*
adobe flash_player_for_linux 9.0.124.0 cpe:2.3:a:adobe:flash_player_for_linux:9.0.124.0:*:*:*:*:*:*:*
adobe flash_player_for_linux 9.0.151.0 cpe:2.3:a:adobe:flash_player_for_linux:9.0.151.0:*:*:*:*:*:*:*
adobe flash_player_for_linux 10.0.12.36 cpe:2.3:a:adobe:flash_player_for_linux:10.0.12.36:*:*:*:*:*:*:*
adobe flash_player_for_linux 10.0.15.3 cpe:2.3:a:adobe:flash_player_for_linux:10.0.15.3:*:*:*:*:*:*:*

References for CVE-2010-2214

cvelogic Threat Intelligence