PT-2016-7398 · Adobe · Connect
Benjamin Kunz Mejri
·
Published
2016-11-08
·
Updated
2017-09-03
·
CVE-2016-7851
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Adobe Connect versions 9.5.6 and earlier
Description
The issue arises from inadequate input validation in the events registration module, which could be exploited in cross-site scripting attacks.
Recommendations
For Adobe Connect versions 9.5.6 and earlier, update to a version that addresses the input validation issue in the events registration module.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Connect