Unrated severityNVD Advisory· Published Jul 11, 2007· Updated Jun 16, 2026
CVE-2007-3457
CVE-2007-3457
Description
Adobe Flash Player 8.0.34.0 and earlier insufficiently validates HTTP Referer headers, which might allow remote attackers to conduct a CSRF attack via a crafted SWF file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*range: <=8.0.34.0
- (no CPE)range: <=8.0.34.0
Patches
Vulnerability mechanics
References
16- secunia.com/advisories/26027nvdPatchVendor Advisory
- secunia.com/advisories/26118nvdVendor Advisory
- secunia.com/advisories/26357nvdVendor Advisory
- www.kb.cert.org/vuls/id/138457nvdUS Government Resource
- www.us-cert.gov/cas/techalerts/TA07-192A.htmlnvdUS Government Resource
- secunia.com/advisories/28068nvd
- sunsolve.sun.com/search/document.donvd
- sunsolve.sun.com/search/document.donvd
- www.adobe.com/support/security/bulletins/apsb07-12.htmlnvd
- www.gentoo.org/security/en/glsa/glsa-200708-01.xmlnvd
- www.novell.com/linux/security/advisories/2007_46_flashplayer.htmlnvd
- www.osvdb.org/38049nvd
- www.securitytracker.com/idnvd
- www.vupen.com/english/advisories/2007/2497nvd
- www.vupen.com/english/advisories/2007/4190nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/35338nvd
News mentions
0No linked articles in our index yet.