CVE-2006-5330 | Adobe Flash Player up to 9.0.16 HTTP XML Request XML.addRequestHeader cross site scripting (Nessus ID 23869 / ID 115527)
A vulnerability, which was classified as problematic, was found in Adobe Flash Player up to 9.0.16. This affects the function XML.addRequestHeader of the component HTTP XML Request Handler. Executing a manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2006-5330. It is possible to launch the attack remotely. Furthermore, an exploit is available.
You should upgrade the affected component.