Adobe Connect 12.8

CPE Details

Adobe Connect 12.8
12.8
2024-12-16
19h15 +00:00
2024-12-16
19h15 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:adobe:connect:12.8:*:*:*:*:*:*:*

Informations

Vendor

adobe

Product

connect

Version

12.8

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2025-30315 2025-05-13 20h32 +00:00 Adobe Connect versions 12.8 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
6.1
Moyen
CVE-2025-30316 2025-05-13 20h32 +00:00 Adobe Connect versions 12.8 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
5.4
Moyen
CVE-2025-30314 2025-05-13 20h32 +00:00 Adobe Connect versions 12.8 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
6.1
Moyen
CVE-2025-43567 2025-05-13 20h32 +00:00 Adobe Connect versions 12.8 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field. A successful attacker can abuse this to achieve session takeover, increasing the confidentiality and integrity impact as high.
9.3
Critique