Unrated severityNVD Advisory· Published Jul 11, 2007· Updated Apr 23, 2026
CVE-2007-3457
CVE-2007-3457
Description
Adobe Flash Player 8.0.34.0 and earlier insufficiently validates HTTP Referer headers, which might allow remote attackers to conduct a CSRF attack via a crafted SWF file.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
16- secunia.com/advisories/26027nvdPatchVendor Advisory
- secunia.com/advisories/26118nvdVendor Advisory
- secunia.com/advisories/26357nvdVendor Advisory
- www.kb.cert.org/vuls/id/138457nvdUS Government Resource
- www.us-cert.gov/cas/techalerts/TA07-192A.htmlnvdUS Government Resource
- secunia.com/advisories/28068nvd
- sunsolve.sun.com/search/document.donvd
- sunsolve.sun.com/search/document.donvd
- www.adobe.com/support/security/bulletins/apsb07-12.htmlnvd
- www.gentoo.org/security/en/glsa/glsa-200708-01.xmlnvd
- www.novell.com/linux/security/advisories/2007_46_flashplayer.htmlnvd
- www.osvdb.org/38049nvd
- www.securitytracker.com/idnvd
- www.vupen.com/english/advisories/2007/2497nvd
- www.vupen.com/english/advisories/2007/4190nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/35338nvd
News mentions
0No linked articles in our index yet.