10
CVE-2016-4171
- EPSS 20.21%
- Veröffentlicht 16.06.2016 14:59:51
- Zuletzt bearbeitet 21.04.2026 21:07:11
- Erkennungen
Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier allows remote attackers to execute arbitrary code via unknown vectors, as exploited in the wild in June 2016.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Adobe ≫ Flash Player Version <= 11.2.202.621
Adobe ≫ Flash Player SwPlatform chrome Version <= 21.0.0.242
Adobe ≫ Flash Player SwPlatform internet_explorer Version <= 21.0.0.242
Adobe ≫ Flash Player SwEdition esr Version <= 18.0.0.352
Adobe ≫ Flash Player SwPlatform edge Version <= 21.0.0.242
Adobe ≫ Flash Player SwPlatform internet_explorer Version <= 21.0.0.242
Redhat ≫ Enterprise Linux Desktop Version 5.0
Redhat ≫ Enterprise Linux Desktop Version 6.0
Redhat ≫ Enterprise Linux Server Version 5.0
Redhat ≫ Enterprise Linux Server Version 6.0
Redhat ≫ Enterprise Linux Workstation Version 5.0
Redhat ≫ Enterprise Linux Workstation Version 6.0
Suse ≫ Linux Enterprise Desktop Version 12 Update -
Suse ≫ Linux Enterprise Desktop Version 12 Update sp1
Suse ≫ Linux Enterprise Workstation Extension Version 12
Suse ≫ Linux Enterprise Workstation Extension Version 12 Update sp1
25.03.2022: CISA Known Exploited Vulnerabilities (KEV) Catalog
Adobe Flash Player Remote Code Execution Vulnerability
SchwachstelleUnspecified vulnerability in Adobe Flash Player allows for remote code execution.
BeschreibungThe impacted product is end-of-life and should be disconnected if still in use.
Erforderliche Maßnahmen| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 20.21% | 0.972 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
| CISA-ADP | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
https://security.gentoo.org/glsa/201606-08
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00031.html
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00035.html
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00038.html
https://access.redhat.com/errata/RHSA-2016:1238
https://helpx.adobe.com/security/products/flash-player/apsb16-18.html
http://www.securityfocus.com/bid/91184
http://www.securitytracker.com/id/1036094
https://helpx.adobe.com/security/products/flash-player/apsa16-03.html
https://www.kb.cert.org/vuls/id/748992
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2016-4171
https://github.com/cisagov/vulnrichment/issues/196