Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2016-4135

5 documents5 sources
Severity
8.8HIGH
EPSS
30.3%
top 3.31%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedJun 16
Latest updateMay 13

Description

Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-083.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages8 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-hhxp-6g82-73m3: Unspecified vulnerability in Adobe Flash Player 212022-05-13
CVEList
CVE-2016-4135: Unspecified vulnerability in Adobe Flash Player 212016-06-16

💥Exploits & PoCs

1
Exploit-DB
Adobe Flash - ATF Processing Overflow2016-07-11

📋Vendor Advisories

1
Red Hat
flash-plugin: multiple code execution issues fixed in APSB16-182016-06-14
CVE-2016-4135 (HIGH CVSS 8.8) | Unspecified vulnerability in Adobe | cvebase.io