CVE-2016-1096
Last modified
CVE-2016-1096 is a vulnerability of currently unknown severity. Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.. EPSS estimates a 39.65% chance of exploitation in the next 30 days.
Description
Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Adobe | Flash Player | <= 21.0.0.213 |
| Microsoft | Edge | All versions |
| Microsoft | Internet Explorer | 10 |
| Microsoft | Internet Explorer | 11 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-1096?
How severe is CVE-2016-1096?
How do I fix CVE-2016-1096?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2016
- CVE-2016-10954The Neosense theme before 1.8 for WordPress has qquploader u…9.8
- CVE-2016-10955The cysteme-finder plugin before 1.4 for WordPress has unres…9.8
- CVE-2016-10956The mail-masta plugin 1.0 for WordPress has local file inclu…7.5
- CVE-2016-10957The Akal theme through 2016-08-22 for WordPress has XSS via …6.1
- CVE-2016-10958The estatik plugin before 2.3.0 for WordPress has unauthenti…7.5
- CVE-2016-10959The estatik plugin before 2.3.1 for WordPress has authentica…6.5
- CVE-2016-10960The wsecure plugin before 2.4 for WordPress has remote code …8.8
- CVE-2016-10961The colorway theme before 3.4.2 for WordPress has XSS via th…6.1
- CVE-2016-10962The icegram plugin before 1.9.19 for WordPress has CSRF via …6.5
- CVE-2016-10963The icegram plugin before 1.9.19 for WordPress has XSS.6.1
- CVE-2016-10964The dwnldr plugin before 1.01 for WordPress has XSS via the …6.1
- CVE-2016-10965The real3d-flipbook-lite plugin 1.0 for WordPress has delete…7.5
Are you affected by CVE-2016-1096?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
