Vulnerability CVE-2010-2179: Information

Description

Cross-site scripting (XSS) vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, when Firefox or Chrome is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to URL parsing.

Severity: MEDIUM (4.3)

Published: June 15, 2010
Modified: Sept. 15, 2022
Error type identifier: CWE-79

References to Advisories, Solutions, and Tools

Hyperlink
Resource
http://www.adobe.com/support/security/bulletins/apsb10-14.html
  • Broken Link
  • Patch
  • Third Party Advisory
  • Vendor Advisory
1024085
  • Third Party Advisory
  • VDB Entry
40759
  • Broken Link
  • VDB Entry
1024086
  • Broken Link
  • VDB Entry
RHSA-2010:0470
  • Broken Link
  • Third Party Advisory
RHSA-2010:0464
  • Broken Link
  • Third Party Advisory
40808
  • Broken Link
  • VDB Entry
ADV-2010-1453
  • Broken Link
TA10-162A
  • Third Party Advisory
  • US Government Resource
ADV-2010-1434
  • Broken Link
SUSE-SA:2010:024
  • Third Party Advisory
ADV-2010-1482
  • Broken Link
ADV-2010-1432
  • Broken Link
40144
  • Broken Link
SUSE-SR:2010:013
  • Third Party Advisory
ADV-2010-1421
  • Broken Link
ADV-2010-1522
  • Broken Link
TLSA-2010-19
  • Broken Link
40545
  • Broken Link
SSRT100179
  • Third Party Advisory
ADV-2010-1793
  • Broken Link
APPLE-SA-2010-11-10-1
  • Mailing List
  • Third Party Advisory
http://support.apple.com/kb/HT4435
  • Broken Link
GLSA-201101-09
  • Third Party Advisory
ADV-2011-0192
  • Broken Link
43026
  • Broken Link
adobe-player-air-url-xss(59328)
  • Third Party Advisory
  • VDB Entry
oval:org.mitre.oval:def:7126
  • Broken Link
    1. Configuration 1

      cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*

      cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*

      Running on/with:
      cpe:2.3:a:google:chrome:-:*:*:*:*:*:*:*

      Running on/with:
      cpe:2.3:a:mozilla:firefox:-:*:*:*:*:*:*:*

      Configuration 2

      cpe:2.3:a:adobe:air:*:*:*:*:*:*:*:*

      Running on/with:
      cpe:2.3:a:google:chrome:-:*:*:*:*:*:*:*

      Running on/with:
      cpe:2.3:a:mozilla:firefox:-:*:*:*:*:*:*:*