| |||||||||||||||
Date: Mon, 17 Aug 2009 18:46:45 +0400 From: research@dsecrg.com To: bugtraq@securityfocus.com, vuln@secunia.com, Subject: [DSECRG-09-051] Adobe JRun 4 Multiple XSS MIME-Version: 1.0 Content-Type: multipart/mixed; boundary="----------11B81AA21D7C3EE" X-Virus-Scanned: antivirus-gw at tyumen.ru ------------11B81AA21D7C3EE Content-Type: text/plain; charset=windows-1251 Content-Transfer-Encoding: quoted-printable =0D=0A --=20 =D1 =F3=E2=E0=E6=E5=ED=E8=E5=EC, research mailto:research@dsecrg.com. ------------11B81AA21D7C3EE Content-Type: text/plain; name="[DSECRG-09-051] Adobe JRun 4 Multiple XSS.txt" Content-transfer-encoding: base64 Content-Disposition: attachment; filename="[DSECRG-09-051] Adobe JRun 4 Multiple XSS.txt" DQpEaWdpdGFsIFNlY3VyaXR5IFJlc2VhcmNoIEdyb3VwIFtEU2VjUkddIEFkdmlzb3J5CSNE U0VDUkctMDktMDUxDQoNCg0KQXBwbGljYXRpb246ICAgICAgICAgICAgICAgIEFkb2JlIEpS dW4gQXBwbGljYXRpb24gU2VydmVyDQpWZXJzaW9ucyBBZmZlY3RlZDogICAgICAgICAgNCB1 cGRhdGVyIDcNClZlbmRvciBVUkw6ICAgICAgICAgICAgICAgICBodHRwOi8vd3d3LmFkb2Jl LmNvbS9wcm9kdWN0cy9qcnVuLw0KQnVnOiAgICAgICAgICAgICAgICAgICAgICAgIERpcmVj dG9yeSBUcmF2ZXJzYWwgRmlsZSBSZWFkDQpFeHBsb2l0czogICAgICAgICAgICAgICAgICAg WUVTDQpSZXBvcnRlZDogICAgICAgICAgICAgICAgICAgMjAuMDEuMjAwOQ0KVmVuZG9yIHJl c3BvbnNlOiAgICAgICAgICAgIDIxLjAxLjIwMDkNClNvbHV0aW9uOiAgICAgICAgICAgICAg ICAgICBZRVMgICANCkRhdGUgb2YgUHVibGljIEFkdmlzb3J5OiAgICAxNy4wOC4yMDA5DQpD VkUtbnVtYmVyOiAgICAgICAgICAgICAgICAgQ1ZFLTIwMDktMTg3Mw0KQXV0aG9yOiAgICAg ICAgICAgICAgICAgICAgIERpZ2l0YWwgU2VjdXJpdHkgUmVzZWFyY2ggR3JvdXAgW0RTZWNS R10gKHJlc2VhcmNoIFthdF0gZHNlYyBbZG90XSBydSkNCg0KDQoNCkRlc2NyaXB0aW9uDQoq KioqKioqKioqKg0KDQpKUnVuIE1hbmFnZW1lbnQgQ29uc29sZSBEaXJlY3RvcnkgVHJhdmVy c2FsIHZ1bG5lcmFiaWxpdHkuDQoNCg0KRGV0YWlscw0KKioqKioqKg0KDQoNCkRpcmVjdG9y eSBUcmF2ZXJzYWwgdnVsbmVyYWJpbGl0eSBmb3VuZCBpbiBzY3JpcHQgbG9ndmlld2VyLmpz cA0KDQpVc2luZyBNYW5hZ2VtZW50IENvbnNvbGUgYXV0aGVudGljYXRlZCBhdHRhY2tlciBj YW4gcmVhZCBhbnkgZmlsZSBvbiBzZXJ2ZXIuDQoNCkFsc28gYXR0YWNrZXIgY2FuIGV4cGxv aXQgdGhpcyBpc3N1ZSB1c2luZyBYU1MgKGh0dHA6Ly93d3cuZHNlY3JnLmNvbS9wYWdlcy92 dWwvc2hvdy5waHA/aWQ9MTUyKQ0KDQoNCkV4YW1wbGU6DQoNCmh0dHA6Ly9bc2VydmVyXS9z ZXJ2ZXIvW3Byb2ZpbGVdL2xvZ2dpbmcvbG9ndmlld2VyLmpzcD9sb2dmaWxlPS4uLy4uLy4u Ly4uLy4uLy4uLy4uL2Jvb3QuaW5pDQoNCg0KDQoNCkZpeCBJbmZvcm1hdGlvbg0KKioqKioq KioqKioqKioqDQpUaGUgaXNzdWUgaGFzIGJlZW4gc29sdmVkIDE3IGF1Z3VzdCAyMDA5LiAg aHR0cDovL3d3dy5hZG9iZS5jb20vZ28vYXBzYjA5LTEyDQoNCg0KUmVmZXJlbmNlczoNCioq KioqKioqKioqDQoNCmh0dHA6Ly93d3cuYWRvYmUuY29tL2dvL2Fwc2IwOS0xMg0KaHR0cDov L3d3dy5kc2VjcmcuY29tL3BhZ2VzL3Z1bC9zaG93LnBocD9pZD0xNTENCg0KDQpBYm91dA0K KioqKioNCg0KDQpEaWdpdGFsIFNlY3VyaXR5IG9uZSBvZiB0aGUgbGVhZGluZyBJVCBzZWN1 cml0eSBjb21wYW5pZXMgaW4gQ0VNRUEsIHByb3ZpZGluZyBpbmZvcm1hdGlvbiBzZWN1cml0 eSBjb25zdWx0aW5nLCBhdWRpdCBhbmQgcGVuZXRyYXRpb24gdGVzdGluZyBzZXJ2aWNlcywg cmlzayBhbmFseXNpcyBhbmQgSVNNUy1yZWxhdGVkIHNlcnZpY2VzIGFuZCBjZXJ0aWZpY2F0 aW9uIGZvciBJU08vSUVDIDI3MDAxOjIwMDUgYW5kIFBDSSBEU1Mgc3RhbmRhcmRzLiBEaWdp dGFsIFNlY3VyaXR5IFJlc2VhcmNoIEdyb3VwIGZvY3VzZXMgb24gd2ViIGFwcGxpY2F0aW9u IGFuZCBkYXRhYmFzZSBzZWN1cml0eSBwcm9ibGVtcyB3aXRoIHZ1bG5lcmFiaWxpdHkgcmVw b3J0cywgYWR2aXNvcmllcyBhbmQgd2hpdGVwYXBlcnMgcG9zdGVkIHJlZ3VsYXJseSBvbiBv dXIgd2Vic2l0ZS4NCg0KDQpDb250YWN0OglyZXNlYXJjaCBbYXRdIGRzZWNyZyBbZG90XSBj b20NCgkJaHR0cDovL3d3dy5kc2VjcmcuY29tIA0KCQ0K ------------11B81AA21D7C3EE--
| |||||||||||||||
|
|