CVE-2016-6936
Android Adobe Air 22.0.0.153 Insecure Tranport
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Adobe AIR SDK & Compiler before 23.0.0.257 on Windows does not support Android runtime-analytics transport security, which might allow remote attackers to obtain sensitive information by leveraging access to a network over which analytics data is sent.
Adobe AIR SDK & Compiler en versiones anteriores a 23.0.0.257 en Windows no admite seguridad del transporte de análisis del tiempo de ejecución de Android, lo que podría permitir a atacantes remotos obtener información sensible aprovechando el acceso a una red sobre la que se envían los datos analíticos.
Android applications developed with Adobe AIR send data back to Adobe servers without HTTPS while running. This can allow an attacker to compromise the privacy of the applications' users. This has been fixed in Adobe AIR SDK release version 23.0.0.257. This affects applications compiled with the Adobe AIR SDK versions 22.0.0.153 and earlier.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-08-23 CVE Reserved
- 2016-09-15 CVE Published
- 2024-08-06 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (4)
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://helpx.adobe.com/security/products/air/apsb16-31.html | 2017-08-13 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Adobe Search vendor "Adobe" | Air Sdk \& Compiler Search vendor "Adobe" for product "Air Sdk \& Compiler" | 22.0.0.153 Search vendor "Adobe" for product "Air Sdk \& Compiler" and version "22.0.0.153" | - |
Affected
| in | Apple Search vendor "Apple" | Mac Os X Search vendor "Apple" for product "Mac Os X" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Air Sdk \& Compiler Search vendor "Adobe" for product "Air Sdk \& Compiler" | 22.0.0.153 Search vendor "Adobe" for product "Air Sdk \& Compiler" and version "22.0.0.153" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|