First published: Fri Sep 07 2018(Updated: )
Cross-site scripting vulnerability in FV Flowplayer Video Player 6.1.2 to 6.6.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Flowplayer | >=6.1.2<=6.6.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-0642 is a cross-site scripting vulnerability in FV Flowplayer Video Player 6.1.2 to 6.6.4.
The severity of CVE-2018-0642 is medium (6.1).
CVE-2018-0642 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2018-0642 affects FV Flowplayer Video Player versions 6.1.2 to 6.6.4.
To fix CVE-2018-0642, update FV Flowplayer Video Player to a version higher than 6.6.4.