Adobe Information for VU#249337

Flash authoring tools create Flash files that contain cross-site scripting vulnerabilities

Status

Affected

Vendor Statement

No statement is currently available from the vendor regarding this vulnerability.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Vendor References

None

Addendum

Adobe has published multiple Adobe Product Security Bulletins to address this issue. APSB08-01 describes updates for the Adobe Dreamweaver and Contribute products. APSB08-02 describes updates for the Adobe Connect Enterprise Server product. Note that these two bulletins supercede information previously published in Adobe Product Security Advisory APSA07-06.

Users are also encouraged to review Adobe Product Security Bulletin APSB07-20 that documents mitigations in the Adobe Flash Player for some cross-site scripting vulnerabilities.

If you have feedback, comments, or additional information about this vulnerability, please send us email.