[Forgot Password]
Login  Register Subscribe

24128

 
 

131615

 
 

114563

 
 

909

 
 

88860

 
 

136

Paid content will be excluded from the download.


Download | Alert*
OVAL

Cross-site scripting (XSS) vulnerability in Adobe Flash Player via a crafted URL

ID: oval:org.secpod.oval:def:2333Date: (C)2011-09-30   (M)2018-10-09
Class: VULNERABILITYFamily: windows




The host is installed with Adobe Flash Player before 10.3.183.10 and is prone to cross-site scripting vulnerability. A flaw is present in the application, which fails to properly handle crafted URL. Successful exploitation allows remote attackers to inject arbitrary web script or HTML.

Platform:
Microsoft Windows Server 2016
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Vista
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows 7
Microsoft Windows 10
Microsoft Windows 8.1
Microsoft Windows Server 2012 R2
Microsoft Windows 8
Microsoft Windows Server 2012
Product:
Adobe Flash Player
Reference:
CVE-2011-2444
CVE    1
CVE-2011-2444
CPE    2
cpe:/a:adobe:flash_player_npapi:::x86
cpe:/a:adobe:flash_player_activex:::x86

© SecPod Technologies