[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2011-2107Date: (C)2011-06-08   (M)2023-12-22


Cross-site scripting (XSS) vulnerability in Adobe Flash Player before 10.3.181.22 on Windows, Mac OS X, Linux, and Solaris, and 10.3.185.22 and earlier on Android, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a "universal cross-site scripting vulnerability."

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 4.3
Exploit Score: 8.6
Impact Score: 2.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: NONE
Integrity: PARTIAL
Availability: NONE
  
Reference:
SECTRACK-1025603
SECTRACK-1025658
SECUNIA-44846
SECUNIA-44847
SECUNIA-44871
SECUNIA-44872
SECUNIA-44946
BID-48107
SECUNIA-48308
RHSA-2011:0850
flash-player-unspecified-xss(67838)
http://googlechromereleases.blogspot.com/2011/06/stable-channel-update.html
http://www.adobe.com/support/security/bulletins/apsb11-13.html
http://www.blackberry.com/btsc/KB27240
openSUSE-SU-2011:0612
oval:org.mitre.oval:def:13762

CPE    130
cpe:/a:adobe:acrobat:10.0.2
cpe:/a:adobe:acrobat:10.0.3
cpe:/a:adobe:acrobat:10.0.1
cpe:/a:adobe:acrobat_reader:10.0.1
...
CWE    1
CWE-79
OVAL    10
oval:org.secpod.oval:def:1577
oval:org.secpod.oval:def:1578
oval:org.secpod.oval:def:505812
oval:org.secpod.oval:def:505794
...

© SecPod Technologies