Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fm65-7j3c-jcv3

Опубликовано: 14 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.3

Описание

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser. Scope is changed.

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser. Scope is changed.

EPSS

Процентиль: 22%
0.00304
Низкий

9.3 Critical

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 9.3
nvd
4 месяца назад

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed.

CVSS3: 9.3
fstec
4 месяца назад

Уязвимость программ мгновенного обмена сообщениями Adobe Connect и Adobe Connect Desktop Application, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 22%
0.00304
Низкий

9.3 Critical

CVSS3

Дефекты

CWE-79