VulnerabilityModified
CVE-2007-6242
Unspecified vulnerability in Adobe Flash Player 9.0.48.0 and earlier might allow remote attackers to execute arbitrary code via unknown vectors, related to "input validation errors."
MEDIUM 6.8EPSS 30.1%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 30.1%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
Unspecified vulnerability in Adobe Flash Player 9.0.48.0 and earlier might allow remote attackers to execute arbitrary code via unknown vectors, related to "input validation errors."
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 30.06% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- adobe/flash player
- Source
- cve@mitre.org
References
- http://lists.opensuse.org/opensuse-security-announce/2007-12/msg00007.htmlMailing List, Third Party Advisory
- http://secunia.com/advisories/28157Third Party Advisory
- http://secunia.com/advisories/28161Third Party Advisory
- http://secunia.com/advisories/28213Third Party Advisory
- http://secunia.com/advisories/28570Third Party Advisory
- http://secunia.com/advisories/30507Third Party Advisory
- http://securitytracker.com/id?1019116Third Party Advisory, VDB Entry
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-238305-1Broken Link
- http://www.adobe.com/support/security/bulletins/apsb07-20.htmlVendor Advisory
- http://www.gentoo.org/security/en/glsa/glsa-200801-07.xmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2007-1126.htmlThird Party Advisory
- http://www.securityfocus.com/bid/26951Third Party Advisory, VDB Entry
- http://www.us-cert.gov/cas/techalerts/TA07-355A.htmlThird Party Advisory, US Government Resource
- http://www.vupen.com/english/advisories/2007/4258Third Party Advisory
- http://www.vupen.com/english/advisories/2008/1724/referencesThird Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39128Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9188Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2007-12/msg00007.htmlMailing List, Third Party Advisory
- http://secunia.com/advisories/28157Third Party Advisory
- http://secunia.com/advisories/28161Third Party Advisory
- http://secunia.com/advisories/28213Third Party Advisory
- http://secunia.com/advisories/28570Third Party Advisory
- http://secunia.com/advisories/30507Third Party Advisory
- http://securitytracker.com/id?1019116Third Party Advisory, VDB Entry
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-238305-1Broken Link
- http://www.adobe.com/support/security/bulletins/apsb07-20.htmlVendor Advisory
- http://www.gentoo.org/security/en/glsa/glsa-200801-07.xmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2007-1126.htmlThird Party Advisory
- http://www.securityfocus.com/bid/26951Third Party Advisory, VDB Entry
- http://www.us-cert.gov/cas/techalerts/TA07-355A.htmlThird Party Advisory, US Government Resource
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.