Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
437 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 8.3% | — | Adobe Flash PlayerAdobe Flash Player Desktop RuntimeAdobe AIR Desktop RuntimeAdobe AIR SDK+1 | 9/4/2016 | 17/6/2026 | Stack-based buffer overflow in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via crafted JPEG-XR data. | |
| Modificada | Alta (8.8) | 6.1% | — | Adobe Flash PlayerAdobe Flash Player Desktop RuntimeAdobe AIR Desktop RuntimeAdobe AIR SDK+1 | 9/4/2016 | 17/6/2026 | Use-after-free vulnerability in the LoadVars.decode function in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1011,… | |
| Modificada | Alta (8.8) | 6.1% | — | Adobe Flash PlayerAdobe Flash Player Desktop RuntimeAdobe AIR Desktop RuntimeAdobe AIR SDK+1 | 9/4/2016 | 17/6/2026 | Use-after-free vulnerability in the Transform object implementation in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via a flash.geom.Matrix callback, a different vulnerability than… | |
| Modificada | Alta (8.8) | 7.1% | — | Adobe Flash PlayerAdobe Flash Player Desktop RuntimeAdobe AIR Desktop RuntimeAdobe AIR SDK+1 | 9/4/2016 | 17/6/2026 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code by overriding NetConnection object properties to leverage an unspecified "type confusion," a different vulnerability than CVE-2016-1019. | |
| Modificada | Alta (7.3) | 1.2% | — | Adobe Flash PlayerAdobe Flash Player Desktop RuntimeAdobe AIR Desktop RuntimeAdobe AIR SDK+1 | 9/4/2016 | 17/6/2026 | Untrusted search path vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows local users to gain privileges via a Trojan horse resource in an unspecified directory. | |
| Modificada | Alta (8.8) | 23% | — | Adobe Flash PlayerAdobe Flash Player Desktop RuntimeAdobe AIR Desktop RuntimeAdobe AIR SDK+1 | 9/4/2016 | 17/6/2026 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1011, CVE-2016-1016, CVE-2016-1017, and… | |
| Modificada | Alta (8.8) | 3.8% | — | Adobe Flash PlayerAdobe Flash Player Desktop RuntimeAdobe AIR Desktop RuntimeAdobe AIR SDK+1 | 9/4/2016 | 17/6/2026 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1020, CVE-2016-1021,… | |
| Modificada | Alta (8.8) | 26% | — | Adobe Flash PlayerAdobe Flash Player Desktop RuntimeAdobe AIR Desktop RuntimeAdobe AIR SDK+1 | 9/4/2016 | 17/6/2026 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1013, CVE-2016-1016, CVE-2016-1017, and… | |
| Modificada | Alta (8.1) | 3.9% | — | Adobe Flash PlayerAdobe Flash Player Desktop RuntimeAdobe AIR Desktop RuntimeAdobe AIR SDK+1 | 9/4/2016 | 17/6/2026 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to bypass the ASLR protection mechanism via JIT data. | |
| Analizada | Crítica (9.8) | 22% | ⚠ Explotación activa | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerAdobe AIR Desktop RuntimeAdobe AIR SDK+1 | 7/4/2016 | 1/10/2026 | Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors, as exploited in the wild in April 2016. | |
| Analizada | Alta (8.8) | 19% | ⚠ Explotación activa | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Integer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified… | |
| Modificada | Alta (8.8) | 5.3% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service… | |
| Modificada | Alta (8.8) | 20% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory… | |
| Modificada | Alta (8.8) | 25% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Heap-based buffer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via… | |
| Modificada | Alta (8.8) | 29% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via… | |
| Modificada | Alta (8.8) | 29% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via… | |
| Modificada | Alta (8.8) | 28% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via… | |
| Modificada | Alta (8.8) | 29% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via… | |
| Modificada | Alta (8.8) | 7.1% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Use-after-free vulnerability in the setInterval method in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to… | |
| Modificada | Alta (8.8) | 6.4% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via… | |
| Modificada | Alta (8.8) | 8.0% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code by… | |
| Modificada | Alta (8.8) | 5.7% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Integer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified… | |
| Modificada | Alta (8.8) | 4.6% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory… | |
| Modificada | Alta (8.8) | 5.1% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via… | |
| Modificada | Alta (8.8) | 7.2% | — | Adobe Flash PlayerAdobe AIRAdobe AIR SDKSamsung X14j Firmware+3 | 12/3/2016 | 17/6/2026 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via… |