YUI Library Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2012-5882 - Vulnerability Database

YUI Library Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2012-5882

Medium
Reference: CVE-2012-5882
Title: YUI Library Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.5.0 through 2.9.0 allows remote attackers to inject arbitrary web script or HTML via vectors related to uploader.swf a similar issue to CVE-2010-4208.