CVE-2024-54044: Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79)
Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an unauthenticated attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-54044?
CVE-2024-54044 is classified as a reflected Cross-Site Scripting (XSS) vulnerability with a critical severity level.
How can I fix CVE-2024-54044?
To fix CVE-2024-54044, update Adobe Connect to the latest version that addresses this XSS vulnerability.
What versions of Adobe Connect are affected by CVE-2024-54044?
CVE-2024-54044 affects Adobe Connect versions 12.6, 11.4.7, and earlier, up to version 11.4.9.
What is reflected Cross-Site Scripting in the context of CVE-2024-54044?
Reflected Cross-Site Scripting in CVE-2024-54044 allows an attacker to execute malicious JavaScript code in the context of a victim's session if they visit a crafted URL.
Who can exploit CVE-2024-54044?
CVE-2024-54044 can be exploited by unauthenticated attackers who trick victims into clicking on a malicious URL.