CVE-2016-7890Adobe Flash Player vulnerability

4 documents4 sources
Severity
8.8HIGHNVD
EPSS
0.4%
top 38.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 15
Latest updateMay 14

Description

Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have security bypass vulnerability in the implementation of the same origin policy.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-875f-r88h-j9fv: Adobe Flash Player versions 232022-05-14
CVEList
CVE-2016-7890: Adobe Flash Player versions 232016-12-15

📋Vendor Advisories

1
Red Hat
flash-plugin: multiple code execution issues fixed in APSB16-392016-12-13
CVE-2016-7890 — Adobe Flash Player vulnerability | cvebase