CVE-2016-1035: Infoleak
Published Apr 12, 2016
·Updated
Adobe RoboHelp Server 9 before 9.0.1 mishandles SQL queries, which allows attackers to obtain sensitive information via unspecified vectors.
Affected Software
3 affected components
Adobe RoboHelp=9
Adobe RoboHelp=9.0.0.228
Adobe RoboHelp=9.0.1
Event History
Apr 12, 2016
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1035?
CVE-2016-1035 is classified as a critical severity vulnerability due to its potential to expose sensitive information.
2
How do I fix CVE-2016-1035?
To mitigate CVE-2016-1035, Adobe recommends updating to RoboHelp Server version 9.0.1 or later.
3
What versions of Adobe RoboHelp are affected by CVE-2016-1035?
CVE-2016-1035 affects Adobe RoboHelp Server versions 9 and 9.0.0.228 prior to 9.0.1.
4
What type of vulnerability is CVE-2016-1035?
CVE-2016-1035 is an SQL injection vulnerability that allows unauthorized access to sensitive information.
5
What are the potential consequences of CVE-2016-1035?
Exploitation of CVE-2016-1035 may allow an attacker to gain access to confidential data stored in the database.