Security Bypass Vulnerability in Adobe Flash Player
CVE-2016-7890
8.8HIGH
Key Information:
- Vendor
- Adobe
- Vendor
- CVE Published:
- 15 December 2016
Summary
A security bypass vulnerability exists in Adobe Flash Player affecting specific versions. This flaw compromises the same origin policy implementation, potentially allowing unauthorized access to content or data from different origins. Such vulnerabilities may lead to exploitation, enabling attackers to manipulate security mechanisms and gain access to restricted resources. Users are advised to update their versions of Adobe Flash Player to mitigate the risks associated with this vulnerability.
Affected Version(s)
Adobe Flash Player 23.0.0.207 and earlier, 11.2.202.644 and earlier Adobe Flash Player 23.0.0.207 and earlier, 11.2.202.644 and earlier
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved