Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.810650
Category:Windows : Microsoft Bulletins
Title:Microsoft IE And Microsoft Edge Flash Player Multiple Vulnerabilities (3167685)
Summary:This host is missing a critical security; update according to Microsoft Bulletin MS16-083.
Description:Summary:
This host is missing a critical security
update according to Microsoft Bulletin MS16-083.

Vulnerability Insight:
Multiple flaws exist due to:

- Multiple type confusion vulnerabilities.

- Multiple use-after-free vulnerabilities.

- Multiple heap buffer overflow vulnerabilities.

- Multiple memory corruption vulnerabilities.

- A vulnerability in the directory search path used to find resources.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to bypass the same-origin-policy and lead to information disclosure,
and code execution.

Affected Software/OS:
- Microsoft Windows 8.1 x32/x64

- Microsoft Windows Server 2012/2012R2

- Microsoft Windows 10 x32/x64

- Microsoft Windows 10 Version 1511 x32/x64

- Microsoft Windows 10 Version 1607 x32/x64

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2016-4122
Microsoft Security Bulletin: MS16-083
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-083
RedHat Security Advisories: RHSA-2016:1238
https://access.redhat.com/errata/RHSA-2016:1238
http://www.securitytracker.com/id/1036117
SuSE Security Announcement: SUSE-SU-2016:1613 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00031.html
SuSE Security Announcement: openSUSE-SU-2016:1621 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00035.html
SuSE Security Announcement: openSUSE-SU-2016:1625 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00038.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-4123
Common Vulnerability Exposure (CVE) ID: CVE-2016-4124
Common Vulnerability Exposure (CVE) ID: CVE-2016-4125
Common Vulnerability Exposure (CVE) ID: CVE-2016-4127
Common Vulnerability Exposure (CVE) ID: CVE-2016-4128
Common Vulnerability Exposure (CVE) ID: CVE-2016-4129
Common Vulnerability Exposure (CVE) ID: CVE-2016-4130
Common Vulnerability Exposure (CVE) ID: CVE-2016-4131
Common Vulnerability Exposure (CVE) ID: CVE-2016-4132
Common Vulnerability Exposure (CVE) ID: CVE-2016-4133
Common Vulnerability Exposure (CVE) ID: CVE-2016-4134
Common Vulnerability Exposure (CVE) ID: CVE-2016-4135
https://www.exploit-db.com/exploits/40087/
Common Vulnerability Exposure (CVE) ID: CVE-2016-4136
https://www.exploit-db.com/exploits/40088/
Common Vulnerability Exposure (CVE) ID: CVE-2016-4137
https://www.exploit-db.com/exploits/40089/
Common Vulnerability Exposure (CVE) ID: CVE-2016-4138
https://www.exploit-db.com/exploits/40090/
Common Vulnerability Exposure (CVE) ID: CVE-2016-4139
Common Vulnerability Exposure (CVE) ID: CVE-2016-4140
Common Vulnerability Exposure (CVE) ID: CVE-2016-4141
Common Vulnerability Exposure (CVE) ID: CVE-2016-4142
Common Vulnerability Exposure (CVE) ID: CVE-2016-4143
Common Vulnerability Exposure (CVE) ID: CVE-2016-4144
Common Vulnerability Exposure (CVE) ID: CVE-2016-4145
Common Vulnerability Exposure (CVE) ID: CVE-2016-4146
Common Vulnerability Exposure (CVE) ID: CVE-2016-4147
Common Vulnerability Exposure (CVE) ID: CVE-2016-4148
Common Vulnerability Exposure (CVE) ID: CVE-2016-4149
Common Vulnerability Exposure (CVE) ID: CVE-2016-4150
Common Vulnerability Exposure (CVE) ID: CVE-2016-4151
Common Vulnerability Exposure (CVE) ID: CVE-2016-4152
Common Vulnerability Exposure (CVE) ID: CVE-2016-4153
Common Vulnerability Exposure (CVE) ID: CVE-2016-4154
Common Vulnerability Exposure (CVE) ID: CVE-2016-4155
Common Vulnerability Exposure (CVE) ID: CVE-2016-4156
Common Vulnerability Exposure (CVE) ID: CVE-2016-4166
Common Vulnerability Exposure (CVE) ID: CVE-2016-4171
BugTraq ID: 91184
http://www.securityfocus.com/bid/91184
CERT/CC vulnerability note: VU#748992
https://www.kb.cert.org/vuls/id/748992
https://security.gentoo.org/glsa/201606-08
http://www.securitytracker.com/id/1036094
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.