Unrated severityNVD Advisory· Published Oct 26, 2010· Updated Jun 16, 2026
CVE-2010-2885
CVE-2010-2885
Description
Cross-site scripting (XSS) vulnerability in Adobe RoboHelp 7 and 8, and RoboHelp Server 7 and 8, allows remote attackers to inject arbitrary web script or HTML via vectors related to WebHelp generation with RoboHelp for Word.
Affected products
6cpe:2.3:a:adobe:robohelp:7:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:adobe:robohelp:7:*:*:*:*:*:*:*
- cpe:2.3:a:adobe:robohelp:8:*:*:*:*:*:*:*
- cpe:2.3:a:adobe:robohelp_server:7:*:*:*:*:*:*:*
- cpe:2.3:a:adobe:robohelp_server:8:*:*:*:*:*:*:*
- (no CPE)range: 7, 8
- (no CPE)range: 7, 8
Patches
Vulnerability mechanics
References
4- securitytracker.com/idnvdPatch
- www.adobe.com/support/security/bulletins/apsb10-23.htmlnvdPatchVendor Advisory
- secunia.com/advisories/41870nvdVendor Advisory
- www.vupen.com/english/advisories/2010/2718nvdVendor Advisory
News mentions
0No linked articles in our index yet.