Lucene search

K
cveMitreCVE-2007-6245
HistoryDec 20, 2007 - 1:46 a.m.

CVE-2007-6245

2007-12-2001:46:00
CWE-119
mitre
web.nvd.nist.gov
31
adobe flash player
http request splitting
vulnerability
cve-2007-6245
nvd

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

AI Score

6.4

Confidence

Low

EPSS

0.018

Percentile

88.3%

Adobe Flash Player 9.x up to 9.0.48.0, 8.x up to 8.0.35.0, and 7.x up to 7.0.70.0 allows remote attackers to modify HTTP headers for client requests and conduct HTTP Request Splitting attacks.

Affected configurations

Nvd
Node
adobeflash_playerMatch7.0
OR
adobeflash_playerMatch8.0
OR
adobeflash_playerMatch9.0
VendorProductVersionCPE
adobeflash_player7.0cpe:/a:adobe:flash_player:7.0:::
adobeflash_player8.0cpe:/a:adobe:flash_player:8.0:::
adobeflash_player9.0cpe:/a:adobe:flash_player:9.0:::

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

AI Score

6.4

Confidence

Low

EPSS

0.018

Percentile

88.3%