Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In 2016
Adobe Digital Editions versions 4.5.2 and earlier has an issue with parsing crafted XML entries that could lead to information disclosure.
CVSS Score
7.5
EPSS Score
0.086
Published
2016-12-15
Adobe Digital Editions versions 4.5.2 and earlier has an important vulnerability that could lead to memory address leak.
CVSS Score
5.3
EPSS Score
0.027
Published
2016-12-15
Adobe ColdFusion Builder versions 2016 update 2 and earlier, 3.0.3 and earlier have an important vulnerability that could lead to information disclosure.
CVSS Score
7.5
EPSS Score
0.086
Published
2016-12-15
Adobe InDesign version 11.4.1 and earlier, Adobe InDesign Server 11.0.0 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
CVSS Score
9.8
EPSS Score
0.097
Published
2016-12-15
Adobe Experience Manager versions 6.2 and earlier have a vulnerability that could be used in Cross-Site Request Forgery attacks.
CVSS Score
8.8
EPSS Score
0.012
Published
2016-12-15
Adobe Experience Manager versions 6.1 and earlier have an input validation issue in the DAM create assets that could be used in cross-site scripting attacks.
CVSS Score
6.1
EPSS Score
0.013
Published
2016-12-15
Adobe Experience Manager version 6.2 has an input validation issue in create Launch wizard that could be used in cross-site scripting attacks.
CVSS Score
6.1
EPSS Score
0.013
Published
2016-12-15
Adobe Experience Manager versions 6.2 and earlier have an input validation issue in the WCMDebug filter that could be used in cross-site scripting attacks.
CVSS Score
6.1
EPSS Score
0.013
Published
2016-12-15
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the MovieClip class when handling conversion to an object. Successful exploitation could lead to arbitrary code execution.
CVSS Score
8.8
EPSS Score
0.051
Published
2016-12-15
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability when setting the length property of an array object. Successful exploitation could lead to arbitrary code execution.
CVSS Score
8.8
EPSS Score
0.051
Published
2016-12-15


Contact Us

Shodan ® - All rights reserved