Type Confusion Vulnerability in Adobe Flash Player Affecting Multiple Versions
CVE-2016-7860
8.8HIGH
Key Information:
- Vendor
- Adobe
- Vendor
- CVE Published:
- 8 November 2016
Summary
A type confusion vulnerability exists in Adobe Flash Player, specifically affecting versions 23.0.0.205 and earlier, as well as 11.2.202.643 and earlier. This vulnerability can be exploited by an attacker to execute arbitrary code on the affected system. Users of affected versions are at significant risk if they do not apply necessary updates or patches, as exploitation can lead to unauthorized access and control over the system.
Affected Version(s)
Adobe Flash Player 23.0.0.205 and earlier, 11.2.202.643 and earlier Adobe Flash Player 23.0.0.205 and earlier, 11.2.202.643 and earlier
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved