CVE-2011-2133: XSS
Published Aug 11, 2011
·Updated
Cross-site scripting (XSS) vulnerability in Adobe RoboHelp 8 and 9 before 9.0.1.262, and RoboHelp Server 8 and 9, allows remote attackers to inject arbitrary web script or HTML via the URI, related to templatestock/whutils.js.
Affected Software
5 affected components
Adobe Robohelp=8
Adobe Robohelp=9
Adobe Robohelp=9.0.1.232
Adobe RoboHelp Server=8
Adobe RoboHelp Server=9
Remediation
Event History
Aug 11, 2011
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-2133?
CVE-2011-2133 has a medium severity rating due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2011-2133?
To fix CVE-2011-2133, upgrade Adobe RoboHelp to version 9.0.1.262 or later.
3
Which versions are affected by CVE-2011-2133?
CVE-2011-2133 affects Adobe RoboHelp versions 8 and 9 prior to 9.0.1.262, as well as RoboHelp Server versions 8 and 9.
4
What type of vulnerability is CVE-2011-2133?
CVE-2011-2133 is a cross-site scripting (XSS) vulnerability.
5
What can attackers do with CVE-2011-2133?
Attackers can exploit CVE-2011-2133 to inject arbitrary web scripts or HTML into affected applications.