CVE-2016-0956: Infoleak
The Servlets Post component 2.3.6 in Apache Sling, as used in Adobe Experience Manager 5.6.1, 6.0.0, and 6.1.0, allows remote attackers to obtain sensitive information via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0956?
CVE-2016-0956 is classified as a medium severity vulnerability due to its potential to expose sensitive information.
How do I fix CVE-2016-0956?
To address CVE-2016-0956, it is recommended to upgrade to a patched version of Apache Sling that resolves this vulnerability.
What software versions are affected by CVE-2016-0956?
CVE-2016-0956 affects Apache Sling 2.3.6 and Adobe Experience Manager versions 5.6.1, 6.0.0, and 6.1.0.
What type of vulnerability is CVE-2016-0956?
CVE-2016-0956 is an information disclosure vulnerability that allows remote attackers to obtain sensitive information.
Is CVE-2016-0956 still exploitable?
CVE-2016-0956 remains exploitable in the affected software versions unless mitigated with appropriate updates.