|
|
|
|
| |
Credit:
The original article can be found at: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-2179
The original article can be found at: http://www.securityfocus.com/bid/40808
|
| |
Vulnerable Systems:
* Adobe Flex 4.0
* Adobe Flex 3.0
* Adobe Flash Player 10.1.51 .66
* Adobe Flash Player 10.0.45 2
* Adobe Flash Player 10.0.45 2
* Adobe Flash Player 10.0.32 18
* Adobe Flash Player 10.0.22 .87
* Adobe Flash Player 10.0.15 .3
* Adobe Flash Player 10.0.12 .36
* Adobe Flash Player 10.0.12 .35
* Adobe Flash Player 9.0.262
* Adobe Flash Player 9.0.246 0
* Adobe Flash Player 9.0.152 .0
* Adobe Flash Player 9.0.151 .0
* Adobe Flash Player 9.0.124 .0
* Adobe Flash Player 9.0.48.0
* Adobe Flash Player 9.0.47.0
* Adobe Flash Player 9.0.45.0
* Adobe Flash Player 9.0.31.0
* Adobe Flash Player 9.0.28.0
* Adobe Flash Player 9.0.260.0
* Adobe Flash Player 9.0.246.0
* Adobe Flash Player 9.0.159.0
* Adobe Flash Player 9.0.115.0
* Adobe Flash Player 9
* Adobe Flash Player 8.0.35.0
* Adobe Flash Player 8.0.34.0
* Adobe Flash Player 8
* Adobe Flash Player 7.0.70.0
* Adobe Flash Player 7.0.69.0
* Adobe Flash Player 7
* Adobe Flash Player 10.1 Release Candida
* Adobe Flash Player 10.0.42.34
* Adobe Flash Player 10.0.32.18
* Adobe Flash Player 10
* Adobe Flash CS5 Professional 0
* Adobe Flash CS4 Professional 0
* Adobe Flash CS3 Professional 0
* Adobe AIR 1.5.3 .9130
* Adobe AIR 1.5.3 .9120
* Adobe AIR 1.5.3
* Adobe AIR 1.5.2
* Adobe AIR 1.5.1
* Adobe AIR 1.5
* Adobe AIR 1.1
* Adobe AIR 1.01
* Adobe AIR 1.0
Immune Systems:
* Adobe Flash Player 10.1.53 .64
* Adobe Flash Player 9.0.277.0
* Adobe AIR 2.0.2.12610
Adobe Flash Player and Adobe AIR are prone to a cross-domain scripting vulnerability.
A remote attacker can exploit this vulnerability to bypass the same-origin policy, execute arbitrary script code and obtain potentially sensitive information, or launch spoofing attacks against other sites.
This issue only affects Firefox and Chrome browsers.
Vendor Status:
Adobe as issued an update for this vulnerablity.
Patch Availability:
http://www.adobe.com/support/security/bulletins/apsb10-14.html
CVE Information:
CVE-2010-2179
|
|
|
|
|