Adobe Connect Cross-Site Scripting Vulnerability Fixed by 9.5.7
Description
(:A cross-site scripting vulnerability was reported in Adobe Connect.:A remote attacker could exploit it by enticing their victim into following a specially formed link in order to execute arbitrary JavaScript or HTML code.::This vulnerability is due to an improper validation of user-supplied inputs in the "event_registration.html" file of which "firstname", "lastname" and "companyname" parameters are vulnerable.::A proof of concept is available.)