newsbot
03-01-2008, 08:22 PM
Critical vulnerabilities exist in a large number of widely used web authoring tools that automatically generate Shockwave Flash (SWF) files, such as Adobe (r) Dreamweaver (r), Adobe Acrobat (r) Connect (tm) (formerly Macromedia Breeze), InfoSoft FusionCharts, and Techsmith Camtasia. The flaws render websites that host these generated SWF files vulnerable to Cross-Site Scripting (XSS).
http://www.securiteam.com/securitynews/5BP020UN5A.html
http://www.securiteam.com/securitynews/5BP020UN5A.html