CVE-2023-29305
- EPSS 1.07%
- Published 13.09.2023 09:15:15
- Last modified 21.11.2024 07:56:50
Adobe Connect versions 12.3 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed withi...
CVE-2023-22232
- EPSS 88.66%
- Published 17.02.2023 22:15:13
- Last modified 21.11.2024 07:44:22
Adobe Connect versions 11.4.5 (and earlier), 12.1.5 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to impact the integrity of a mino...
CVE-2021-40719
- EPSS 24.93%
- Published 21.10.2021 20:15:08
- Last modified 21.11.2024 06:24:37
Adobe Connect version 11.2.3 (and earlier) is affected by a Deserialization of Untrusted Data vulnerability to achieve arbitrary method invocation when AMF messages are deserialized on an Adobe Connect server. An attacker can leverage this to execute...
CVE-2021-40721
- EPSS 1.47%
- Published 15.10.2021 15:15:08
- Last modified 21.11.2024 06:24:38
Adobe Connect version 11.2.3 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed wit...
CVE-2021-36063
- EPSS 0.88%
- Published 01.09.2021 15:15:11
- Last modified 21.11.2024 06:13:04
Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected Cross-site Scripting vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s b...
CVE-2021-36062
- EPSS 0.69%
- Published 01.09.2021 15:15:11
- Last modified 21.11.2024 06:13:03
Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected Cross-site Scripting vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. If an attacker is able to convince a victim to visit...
CVE-2021-36061
- EPSS 0.97%
- Published 01.09.2021 15:15:11
- Last modified 21.11.2024 06:13:03
Adobe Connect version 11.2.2 (and earlier) is affected by a secure design principles violation vulnerability via the 'pbMode' parameter. An unauthenticated attacker could leverage this vulnerability to edit or delete recordings on the Connect environ...
- EPSS 0.32%
- Published 28.06.2021 15:15:23
- Last modified 21.11.2024 05:59:53
Adobe Connect version 11.2.1 (and earlier) is affected by an Improper access control vulnerability that can lead to the elevation of privileges. An attacker with 'Learner' permissions can leverage this scenario to access the list of event participant...
CVE-2021-21080
- EPSS 0.86%
- Published 12.03.2021 19:15:14
- Last modified 21.11.2024 05:47:31
Adobe Connect version 11.0.7 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious JavaScript content that may be executed within the context of the victim'...
CVE-2021-21079
- EPSS 0.67%
- Published 12.03.2021 19:15:14
- Last modified 21.11.2024 05:47:31
Adobe Connect version 11.0.7 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious JavaScript content that may be executed within the context of the victim'...