A technical paper by Fraser Howard, SophosLabs, UK
2.2 Exploits targeted
In common with most exploit kits, Blackhole targets a range of client vulnerabilities, with recent emphasis on vulnerabilities in Adobe Reader, Adobe Flash and Java. A list of the key vulnerabilities that have been targeted by Blackhole exploit kits is shown in Table 1. (Note: recent versions of the kit have expired some of the older ones, focussing on just the more recent.)
Table 1: List of vulnerabilities targeted at some point by Blackhole exploit kit.
The various files that are loaded by Blackhole in order to exploit these vulnerabilities are discussed in Section 2.3.3.