Adobe Connect Cross Site Scripting Vulnerability
Description
Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected Cross-site Scripting vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victims browser when they browse to the page containing the vulnerable field. There is also a secure design principles violation vulnerability where an unauthenticated attacker could leverage this vulnerability to edit or delete recordings on the Connect environment.
Affected Applications
Adobe Connect