← All CVEs

CVE-2016-4137

high · 8.8

Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-083.

8.8
CVSS
16.4%
EPSS (exploit prob.)
97th
EPSS percentile
2016-06-16
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected products

VendorProductAffected versions
redhatenterprise_linux_desktop5.0
redhatenterprise_linux_desktop6.0
redhatenterprise_linux_server5.0
redhatenterprise_linux_server6.0
redhatenterprise_linux_workstation5.0
redhatenterprise_linux_workstation6.0
adobeflash_player<= 21.0.0.242
adobeflash_player_desktop_runtime<= 21.0.0.242
applemacosall versions
googlechrome_osall versions
linuxlinux_kernelall versions
microsoftwindowsall versions
microsoftwindows_10all versions
microsoftwindows_8.1all versions
adobeflash_player<= 21.0.0.242
adobeflash_player<= 21.0.0.242
adobeflash_player<= 11.2.202.621
linuxlinux_kernelall versions
adobeflash_player<= 18.0.0.352
applemacosall versions
microsoftwindowsall versions
opensuseopensuse13.1
opensuseopensuse13.2
suselinux_enterprise_desktop12
suselinux_enterprise_desktop12
suselinux_enterprise_workstation_extension12
suselinux_enterprise_workstation_extension12
adobeflash_playerall versions
microsoftwindows_10all versions
microsoftwindows_101511
microsoftwindows_8.1all versions
microsoftwindows_rt_8.1all versions
microsoftwindows_server_2012all versions
microsoftwindows_server_2012all versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2016-4137