Adobe RoboHelp has an Open Redirect vulnerability. This affects versions before RH12.0.4.460 and RH2017 before RH2017.0.2.
The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/100709 | third party advisory vdb entry |
http://www.securitytracker.com/id/1039319 | third party advisory vdb entry |
https://helpx.adobe.com/security/products/robohelp/apsb17-25.html | vendor advisory issue tracking |