CVE-2016-4149

Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-083.
Type Confusion
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
adobeCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 83%
VendorProductVersion
adobeflash_player_desktop_runtime
𝑥
≤ 21.0.0.242
adobeflash_player
𝑥
≤ 11.2.202.621
adobeflash_player
𝑥
≤ 18.0.0.352
adobeflash_player
𝑥
≤ 21.0.0.242
adobeflash_player
𝑥
≤ 21.0.0.242
adobeflash_player
𝑥
≤ 21.0.0.242
redhatenterprise_linux_desktop
5.0
redhatenterprise_linux_desktop
6.0
redhatenterprise_linux_server
5.0
redhatenterprise_linux_server
6.0
redhatenterprise_linux_workstation
5.0
redhatenterprise_linux_workstation
6.0
opensuseopensuse
13.1
opensuseopensuse
13.2
𝑥
= Vulnerable software versions