Security Bypass Vulnerability in Adobe Flash Player
CVE-2016-7890

8.8HIGH

Key Information:

Vendor
Adobe
Vendor
CVE Published:
15 December 2016

Summary

A security bypass vulnerability exists in Adobe Flash Player affecting specific versions. This flaw compromises the same origin policy implementation, potentially allowing unauthorized access to content or data from different origins. Such vulnerabilities may lead to exploitation, enabling attackers to manipulate security mechanisms and gain access to restricted resources. Users are advised to update their versions of Adobe Flash Player to mitigate the risks associated with this vulnerability.

Affected Version(s)

Adobe Flash Player 23.0.0.207 and earlier, 11.2.202.644 and earlier Adobe Flash Player 23.0.0.207 and earlier, 11.2.202.644 and earlier

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.