1 Reply Latest reply: Oct 15, 2014 8:18 PM by XSS on StrobeMediaplayer RSS

    I am HTML developer using Strobe Media playback. Please tell me the ways to prevent strobemediaplayback.swf from XSS attacks.

    XSS on StrobeMediaplayer Community Member

      Attack was reported as a vulnerability issue with Strobe Media player using the below listed URL pattern

       

      http://<hostname>/<app_folder>/StrobeMediaPlayback.swf?src=%23\"))}finally{confirm(/vivek/)}

       

      Any plugin or provision available with Strobe to prevent this ? Pleas suggest a workaround.

       

      Thanks in advance for your assistance,

      Vivek