CVE-2016-1036
MEDIUMAdobe Analytics Appmeasurement For Flash Library < 4.0 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in Adobe Analytics AppMeasurement for Flash Library before 4.0.1, when debugTracking is enabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Scores
CVSS v3
6.1
EPSS
0.0064
EPSS Percentile
70.1%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
adobe/analytics_appmeasurement_for_flash_library
< 4.0
Timeline
Published
Apr 22, 2016
Tracked Since
Feb 18, 2026