CVE-2011-2107

EXPLOITED

Adobe Flash Player <10.3.181.22-10.3.185.22 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in Adobe Flash Player before 10.3.181.22 on Windows, Mac OS X, Linux, and Solaris, and 10.3.185.22 and earlier on Android, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a "universal cross-site scripting vulnerability."

Scores

EPSS 0.0108
EPSS Percentile 77.6%

Exploitation Intel

VulnCheck KEV 2011-06-06

Classification

CWE
CWE-79
Status published

Affected Products (50)

adobe/flash_player < 10.3.181.16
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
adobe/flash_player
... and 35 more

Timeline

Published Jun 09, 2011
Tracked Since Feb 18, 2026