← CVE Tracker
9.8CRITICALCISA KEV — actively exploited

CVE-2016-1019 — Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service…

Adobe · Flash Player Desktop Runtime · Published 7 Apr 2016 · Modified 1 Oct 2026

Description

Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors, as exploited in the wild in April 2016.

References

What to do
  1. Check whether Flash Player Desktop Runtime is in your asset inventory.
  2. Exploitation confirmed — patch within 72 hours.
  3. Record the decision in your risk register for audit evidence.
Alert me on similar CVEs →
Share

Link: adminadda.com/cve/CVE-2016-1019