Adobe Flash Player 8.0.34.0 and earlier insufficiently validates HTTP Referer headers, which might allow remote attackers to conduct a CSRF attack via a crafted SWF file.
References
Configurations
History
No history.
Information
Published : 2007-07-11 16:30
Updated : 2017-07-29 01:32
NVD link : CVE-2007-3457
Mitre link : CVE-2007-3457
CVE.ORG link : CVE-2007-3457
JSON object : View
Products Affected
adobe
- flash_player
CWE
CWE-352
Cross-Site Request Forgery (CSRF)