Arbitrary Code Execution Vulnerability in Adobe Flash Player
CVE-2016-4172

8.8HIGH

Key Information:

Vendor

Adobe

Vendor
CVE Published:
13 July 2016

What is CVE-2016-4172?

Adobe Flash Player versions prior to 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X, as well as versions before 11.2.202.632 on Linux, are susceptible to a vulnerability that enables attackers to execute arbitrary code or trigger a denial of service through various unspecified vectors. This flaw can lead to potential manipulation of software and system functionalities, raising security concerns for users who have not updated their applications.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.