VDB

CVE-2016-7855

CVE-2016-7855 PUBLISHED KEV

Use-after-free vulnerability in Adobe Flash Player before 23.0.0.205 on Windows and OS X and before 11.2.202.643 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in October 2016.

EPSS 58.96% · 98.3th percentile

Risk Scores

EPSS Score
58.96%
98.3th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSflashplugin-nonfree11.2.202.540ubuntu2, 11.2.202.548ubuntu1, 11.2.202.559ubuntu1
Ubuntu:14.04:LTSflashplugin-nonfree11.2.202.406ubuntu0.14.04.2, 11.2.202.411ubuntu0.14.04.1, 11.2.202.438ubuntu0.14.04.1

Timeline

  • Jan 19, 1970 VulnCheck XDB Entry
  • Jul 5, 2015 VulnCheck KEV Exploitation
  • Jul 21, 2015 VulnCheck KEV Exploitation
  • Aug 10, 2015 VulnCheck KEV Exploitation
  • Feb 3, 2016 VulnCheck KEV Exploitation
  • Oct 26, 2016 PoC Published
  • Nov 1, 2016 CVE Published
  • Jan 9, 2017 VulnCheck KEV Exploitation
  • Feb 4, 2018 VulnCheck KEV Exploitation
  • Jun 20, 2018 VulnCheck KEV Exploitation
  • Sep 5, 2018 VulnCheck KEV Exploitation
  • Sep 1, 2019 VulnCheck KEV Exploitation
Open in Interactive Console →
$ Console Community · 100/wk Open console ›