Cross-site scripting (XSS) vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References
Link | Resource |
---|---|
http://www.us-cert.gov/cas/techalerts/TA10-103C.html | US Government Resource |
http://www.vupen.com/english/advisories/2010/0873 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/39329 | |
http://www.adobe.com/support/security/bulletins/apsb10-09.html | Patch Vendor Advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6986 |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Information
Published : 2010-04-14 09:00
Updated : 2018-10-30 09:25
NVD link : CVE-2010-0190
Mitre link : CVE-2010-0190
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
apple
- mac_os_x
microsoft
- windows
adobe
- acrobat_reader
- acrobat