← לוח פגיעויות

CVE-2016-4117

קריטית 9.8 מנוצלת בשטח (KEV)

ניצול פעיל מאומת — קטלוג CISA KEV

שם
Adobe Flash Player Arbitrary Code Execution Vulnerability
נוסף לקטלוג
יעד טיפול (פדרלי)
פעולה נדרשת
The impacted product is end-of-life and should be disconnected if still in use.

תיאור (מקור, אנגלית)

Adobe Flash Player 21.0.0.226 and earlier allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in May 2016.

מדדים

CVSS 3.1
9.8 (CRITICAL) מקור הציון: NVD CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS — סבירות ניצול
94% (אחוזון 100) נכון ל-24/7/2026

מוצרים מושפעים

adobe: flash player; redhat: enterprise linux desktop; redhat: enterprise linux server; redhat: enterprise linux server from rhui; redhat: enterprise linux workstation; opensuse: evergreen; opensuse: opensuse; suse: linux enterprise desktop; suse: linux enterprise workstation extension

קישורים