CVE-2016-0957: High severity adobe dispatcher vulnerability
Dispatcher before 4.1.5 in Adobe Experience Manager 5.6.1, 6.0.0, and 6.1.0 does not properly implement a URL filter, which allows remote attackers to bypass dispatcher rules via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0957?
CVE-2016-0957 is rated as a critical vulnerability due to its potential for remote exploitation.
How do I fix CVE-2016-0957?
To remediate CVE-2016-0957, upgrade Adobe Dispatcher to version 4.1.5 or later and Adobe Experience Manager to a non-vulnerable version.
What software versions are affected by CVE-2016-0957?
CVE-2016-0957 affects Adobe Dispatcher versions prior to 4.1.5 and Adobe Experience Manager versions 5.6.1, 6.0.0, and 6.1.0.
Can an attacker exploit CVE-2016-0957 remotely?
Yes, CVE-2016-0957 allows remote attackers to bypass dispatcher rules due to improper URL filtering.
Is there a workaround for CVE-2016-0957?
There are no specific workarounds for CVE-2016-0957; the recommended action is to apply the available updates.