8.8
CVE-2016-7890
- EPSS 4.63%
- Veröffentlicht 15.12.2016 06:59:54
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have security bypass vulnerability in the implementation of the same origin policy.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Adobe ≫ Flash Player Desktop Runtime Version <= 23.0.0.207
Adobe ≫ Flash Player SwPlatform edge Version <= 23.0.0.207
Adobe ≫ Flash Player SwPlatform internet_explorer Version <= 23.0.0.207
Adobe ≫ Flash Player SwPlatform chrome Version <= 23.0.0.207
Adobe ≫ Flash Player Version <= 11.2.202.644
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.63% | 0.905 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
| NIST | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00064.html
http://lists.opensuse.org/opensuse-updates/2016-12/msg00112.html
http://rhn.redhat.com/errata/RHSA-2016-2947.html
http://www.securitytracker.com/id/1037442
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-154
https://helpx.adobe.com/security/products/flash-player/apsb16-39.html
https://security.gentoo.org/glsa/201701-17
http://www.securityfocus.com/bid/94870