CVE-2008-4818: XSS
Published Nov 10, 2008
·Updated
Cross-site scripting (XSS) vulnerability in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors involving HTTP response headers.
Affected Software
20 affected components
Adobe Flash Player=9.0.16
Adobe Flash Player=9.0.48.0
Adobe Flash Player<=9.0.124.0
Adobe Flash Player=9.0.18d60
Adobe Flash Player=9.0.47.0
Adobe Flash Player=9.0.28.0
Adobe Flash Player=9.0.114.0
Adobe Flash Player=9.0.20.0
Adobe Flash Player=9.0.31.0
Adobe Flash Player=9.0.112.0
Adobe Flash Player=9.0.16
Adobe Flash Player=9.0.28.0
Adobe Flash Player=7.0.69.0
Adobe Flash Player=9.0.28
Adobe Flash Player=9.0.45.0
Adobe Flash Player=9.0.31
Adobe Flash Player=9.0.115.0
Adobe Flash Player=8.0.39.0
Adobe Flash Player=9.0.20
Adobe Flash Player=9.0
Remediation
Patch Available
Event History
Nov 10, 2008
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-4818?
CVE-2008-4818 is classified as a high severity vulnerability due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2008-4818?
To fix CVE-2008-4818, upgrade Adobe Flash Player to version 9.0.124.0 or later.
3
Which versions are affected by CVE-2008-4818?
CVE-2008-4818 affects Adobe Flash Player versions 9.0.124.0 and earlier.
4
What type of vulnerability is CVE-2008-4818?
CVE-2008-4818 is a cross-site scripting (XSS) vulnerability.
5
Can CVE-2008-4818 affect web applications?
Yes, CVE-2008-4818 can affect web applications that use vulnerable versions of Adobe Flash Player.