Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Adobe RoboHelp Server Help Errors Log Cross-Site Scripting and SQL-Injection Vulnerabilities

Adobe RoboHelp Server is prone to cross-site scripting and SQL-injection vulnerabilities because the application fails to properly sanitize user-supplied input.

A successful exploit may allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.







 

Privacy Statement
Copyright 2008, SecurityFocus