← Browse

CVE-2016-4117

Act now ● On CISA KEV — actively exploited used in ransomware

Actively exploited — on the CISA KEV list.

CVSS base
9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS — probability of exploitation (30 days)
94.4%
99.8th percentile
CISA KEV
Listed
Added 2022-03-03 · patch by 2022-03-24
Weakness / dates
Published 2016-05-11 · modified 2026-09-10

Description

Adobe Flash Player 21.0.0.226 and earlier allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in May 2016.

Affected

adobe opensuse redhat suse

References

Official: NVD · CVE.org