Cross-zone scripting vulnerability in RealPlayer ActiveX control in RealNetworks RealPlayer (Mac OSX)ID: oval:org.secpod.oval:def:2122 | Date: (C)2011-09-01 (M)2022-10-10 |
Class: VULNERABILITY | Family: macos |
The host is installed with RealPlayer 12.0.0.1569 or before and is prone to cross-zone scripting vulnerability. A flaw is present in the application which fails to properly handle local HTML files. Successful exploitation allows remote attackers to inject arbitrary web script or HTML in the Local Zone.
Platform: |
Apple Mac OS 12 |
Apple Mac OS 11 |
Apple Mac OS X 10.15 |
Apple Mac OS X 10.14 |
Apple Mac OS X 10.12 |
Apple Mac OS X 10.13 |
Apple Mac OS X 10.8 |
Apple Mac OS X 10.9 |
Apple Mac OS X 10.10 |
Apple Mac OS X 10.11 |
Apple Mac OS X Server 10.8 |
Apple Mac OS X Server 10.9 |
Apple Mac OS X Server 10.10 |
Apple Mac OS X Server 10.11 |