CVE-2016-7892

CVE Published 2016-12-15
Related CWE(s) CWE-416: Use After Free
Related Vendor(s) adobe
Related Product(s) flash_player, flash_player_desktop_runtime
Exploitation Reported (CISA KEV) 2022-03-25
CVSS 3 Base Score 8.8 (HIGH)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector NETWORK

Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the TextField class. Successful exploitation could lead to arbitrary code execution.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

References