10

CVE-2016-4171

Warning

Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier allows remote attackers to execute arbitrary code via unknown vectors, as exploited in the wild in June 2016.

Data is provided by the National Vulnerability Database (NVD)
AdobeFlash Player Version <= 11.2.202.621
   LinuxLinux Kernel Version-
AdobeFlash Player Version <= 21.0.0.242
   ApplemacOS X
   ApplemacOS
   MicrosoftWindows
AdobeFlash Player SwPlatformchrome Version <= 21.0.0.242
   ApplemacOS X
   ApplemacOS
   GoogleChrome Os
   LinuxLinux Kernel
   MicrosoftWindows
AdobeFlash Player SwPlatforminternet_explorer Version <= 21.0.0.242
AdobeFlash Player SwEditionesr Version <= 18.0.0.352
   ApplemacOS X
   ApplemacOS
   MicrosoftWindows
AdobeFlash Player SwPlatformedge Version <= 21.0.0.242
AdobeFlash Player SwPlatforminternet_explorer Version <= 21.0.0.242
OpensuseOpensuse Version13.1
OpensuseOpensuse Version13.2
SuseLinux Enterprise Desktop Version12 Update-
SuseLinux Enterprise Desktop Version12 Updatesp1

25.03.2022: CISA Known Exploited Vulnerabilities (KEV) Catalog

Adobe Flash Player Remote Code Execution Vulnerability

Vulnerability

Unspecified vulnerability in Adobe Flash Player allows for remote code execution.

Description

The impacted product is end-of-life and should be disconnected if still in use.

Required actions
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 24.52% 0.959
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
134c704f-9b21-4f2e-91b3-4a467353bcc0 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H