Skip to content
Saturday, December 6, 2025
Medium Published: Jul 11, 2007 Modified: Apr 09, 2025

CVE-2007-3457

4.3 CVSS SCORE
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N
Share:

Description

Adobe Flash Player 8.0.34.0 and earlier insufficiently validates HTTP Referer headers, which might allow remote attackers to conduct a CSRF attack via a crafted SWF file.

CVSS Vector Details

Attack Vector Network
Attack Complexity M
Confidentiality None
Integrity P
Availability None

Affected Software Configurations

  • a adobe flash_player * * * * * * * *

Weaknesses (CWE)

  • CWE-352

References & External Links