CVE-2016-0958: Infoleak
Published Feb 10, 2016
·Updated
Adobe Experience Manager 5.6.1, 6.0.0, and 6.1.0 might allow remote attackers to have an unspecified impact via a crafted serialized Java object.
Affected Software
6 affected components
Adobe Experience Manager=5.6.1
Adobe Experience Manager=6.0.0
Adobe Experience Manager=6.1.0
Apple iOS and macOS
Linux Linux kernel
Microsoft Windows
Remediation
Event History
Feb 10, 2016
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-0958?
CVE-2016-0958 has a severity rating of high due to the potential for remote code execution via crafted serialized Java objects.
2
How do I fix CVE-2016-0958?
To fix CVE-2016-0958, upgrade Adobe Experience Manager to versions 5.6.2, 6.0.1, or 6.1.1 which address the vulnerability.
3
What versions of Adobe Experience Manager are affected by CVE-2016-0958?
CVE-2016-0958 affects Adobe Experience Manager versions 5.6.1, 6.0.0, and 6.1.0.
4
Can CVE-2016-0958 be exploited remotely?
Yes, CVE-2016-0958 can be exploited remotely by attackers using crafted serialized Java objects.
5
Is there a patch available for CVE-2016-0958?
Yes, Adobe has released patches for CVE-2016-0958 that can be applied by upgrading to the latest versions of the software.