Security Vulnerabilities fixed in Adobe Connect APSB21-91

description-logoDescription

Adobe Connect version 11.2.3 (and earlier) is affected by a Deserialization of Untrusted Data and Cross-site Scripting vulnerability to achieve arbitrary method invocation when AMF messages are deserialized on an Adobe Connect server. An attacker can leverage this to execute remote code execution on the server. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.

affected-products-logoAffected Applications

Adobe Connect