Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2007-6637

Multiple cross-site scripting (XSS) vulnerabilities in Adobe Flash Player allow remote attackers to inject arbitrary web script or HTML via a crafted SWF file, related to "pre-generated SWF files" and Adobe Dreamweaver CS3 or Adobe Acrobat Connect. NOTE: the asfunction: vector is already covered by CVE-2007-6244.1.

  • Published: Jan 4, 2008
  • Updated: Apr 13, 2023
  • CVE: CVE-2007-6637
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:N/I:P/A:N
Software From Fixed in
adobe / flash_player 9.0.48.0 9.0.48.0.x
adobe / flash_player 9.0.18d60 9.0.18d60.x
adobe / flash_player 9.0.47.0 9.0.47.0.x
adobe / flash_player 7.0.63 7.0.63.x
adobe / flash_player 7.0.70.0 7.0.70.0.x
adobe / flash_player 8.0.35.0 8.0.35.0.x
adobe / flash_player 9.0.20.0 9.0.20.0.x
adobe / flash_player 9.0.31.0 9.0.31.0.x
adobe / flash_player 9.0.16 9.0.16.x
adobe / flash_player 9.0.28.0 9.0.28.0.x
adobe / flash_player 7.0.69.0 7.0.69.0.x
adobe / flash_player 9.0.28 9.0.28.x
adobe / flash_player 9.0.45.0 9.0.45.0.x
adobe / flash_player 9.0.31 9.0.31.x
adobe / flash_player 9.0.115.0 9.0.115.0.x
adobe / flash_player 7.0.25 7.0.25.x
adobe / flash_player 8.0 8.0.x
adobe / flash_player 8.0.34.0 8.0.34.0.x