CVE-2007-2022

Adobe Flash Player - Unauthorized Sensitive Information Exposure via Browser Keystroke Leak

Title source: llm
STIX 2.1

Description

Adobe Macromedia Flash Player 7 and 9, when used with Opera before 9.20 or Konqueror before 20070613, allows remote attackers to obtain sensitive information (browser keystrokes), which are leaked to the Flash Player applet.

References (33)

Core 33
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/28068
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/33595
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26357
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26860
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201506-1
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/4190
Issue Tracking x_refsource_confirm
https://issues.rpath.com/browse/RPL-1462
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25894
Vendor Advisory vendor-advisory x_refsource_suse
http://www.novell.com/linux/security/advisories/2007_46_flashplayer.html
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25669
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDKSA-2007:138
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/23437
Third Party Advisory vendor-advisory x_refsource_gentoo
http://www.gentoo.org/security/en/glsa/glsa-200708-01.xml
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/24877
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26027
Vendor Advisory vendor-advisory x_refsource_suse
http://www.novell.com/linux/security/advisories/2007_12_sr.html
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2007-0494.html
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA07-192A.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9332
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/1361
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26118
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25027
Vendor Advisory vendor-advisory x_refsource_suse
http://www.novell.com/linux/security/advisories/2007_28_opera.html
Vendor Advisory x_refsource_confirm
http://www.opera.com/support/search/view/858/
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25933
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/2497
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-26-103167-1
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1017903
Vendor Advisory vendor-advisory x_refsource_sgi
ftp://patches.sgi.com/support/free/security/advisories/20070602-01-P.asc
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25662
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25432

Scores

EPSS 0.1446
EPSS Percentile 94.5%

Details

CWE
CWE-200
Status published
Products (31)
adobe/flash_player 7.0.25
adobe/flash_player 8.0
adobe/flash_player 9.0.18d60
adobe/flash_player 9.0.20
adobe/flash_player 9.0.28
opera/opera_browser 5.0 (8 CPE variants)
opera/opera_browser 5.02
opera/opera_browser 5.10
opera/opera_browser 5.11
opera/opera_browser 5.12
... and 21 more
Published Apr 13, 2007
Tracked Since Feb 18, 2026