Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2016-0951

CWE-119Buffer Overflow4 documents4 sources
Severity
9.8CRITICAL
EPSS
17.5%
top 4.91%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedFeb 10
Latest updateMay 17

Description

Adobe Photoshop CC 2014 before 15.2.4, Photoshop CC 2015 before 16.1.2, and Bridge CC before 6.2 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0952 and CVE-2016-0953.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-3j54-7r73-qgxr: Adobe Photoshop CC 2014 before 152022-05-17
CVEList
CVE-2016-0951: Adobe Photoshop CC 2014 before 152016-02-10

💥Exploits & PoCs

1
Exploit-DB
Adobe Photoshop CC / Bridge CC - '.png' Parsing Memory Corruption (1)2016-02-09
CVE-2016-0951 (CRITICAL CVSS 9.8) | Adobe Photoshop CC 2014 before 15.2 | cvebase.io