CVE-2015-0343: XSS
Published Jun 13, 2015
·Updated
Cross-site scripting (XSS) vulnerability in admin/home/homepage/search in the web app in Adobe Connect before 9.4 allows remote attackers to inject arbitrary web script or HTML via the query parameter.
Affected Software
1 affected component
Adobe Connect<=9.3
Event History
Jun 13, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0343?
CVE-2015-0343 is categorized as a medium severity cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2015-0343?
To fix CVE-2015-0343, update Adobe Connect to version 9.4 or later.
3
What type of vulnerability is CVE-2015-0343?
CVE-2015-0343 is a cross-site scripting (XSS) vulnerability in Adobe Connect.
4
Which versions of Adobe Connect are affected by CVE-2015-0343?
CVE-2015-0343 affects Adobe Connect versions prior to 9.4.
5
Can CVE-2015-0343 be exploited remotely?
Yes, CVE-2015-0343 can be exploited remotely by attackers to inject arbitrary web scripts or HTML.