CVE-2009-1879
21.08.2009, 17:30
Cross-site scripting (XSS) vulnerability in index.template.html in the express-install templates in the SDK in Adobe Flex before 3.4, when the installed Flash version is older than a specified requiredMajorVersion value, allows remote attackers to inject arbitrary web script or HTML via the query string.
Vendor | Product | Version |
---|---|---|
adobe | flex_sdk | 𝑥 < 3.4 |
𝑥
= Vulnerable software versions
References