First published: Tue Oct 26 2010(Updated: )
Cross-site scripting (XSS) vulnerability in Adobe RoboHelp 7 and 8, and RoboHelp Server 7 and 8, allows remote attackers to inject arbitrary web script or HTML via vectors related to WebHelp generation with RoboHelp for Word.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe RoboHelp | =8 | |
Adobe RoboHelp | =7 | |
Adobe RoboHelp | =7 | |
Adobe RoboHelp | =8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2885 is classified as a medium severity cross-site scripting (XSS) vulnerability.
To mitigate CVE-2010-2885, update Adobe RoboHelp to the latest version available from Adobe.
CVE-2010-2885 affects Adobe RoboHelp versions 7 and 8, as well as RoboHelp Server versions 7 and 8.
CVE-2010-2885 is a cross-site scripting (XSS) vulnerability that allows the injection of malicious web scripts.
Remote attackers can exploit CVE-2010-2885 through specific vectors related to WebHelp generation with Adobe RoboHelp for Word.