Go to the RoboHelp install location:
Last updated on
10 Feb 2022
Issue: WebHelp output generated from RoboHelp (2015 release) is vulnerable to certain hacks by malicious users
If you publish WebHelp output for your project, the published content is vulnerable to certain hacks by malicious users.
It was found that a hacker can do any of the following from the published output:
- Execute malicious code by entering the code in the browser URL of the published output
- Store malicious URLs in the cookies and redirect users to another URL
Solution
To resolve these issues, perform the following steps:
-
<Drive>:\Program Files (x86)\Adobe\Adobe RoboHelp 2015\RoboHTML
-
Within the install location, take a backup of the WebHelp5Ext folder and ehlpdhtm.js file.
-
Copy and paste the newly extracted WebHelp5Ext folder and ehlpdhtm.js file into the RoboHelp install location.
When you are prompted, click Yes to merge and overwrite the existing files.
-
Regenerate the WebHelp output.