First published: Thu Dec 15 2016(Updated: )
Adobe Experience Manager versions 6.2 and earlier have a vulnerability that could be used in Cross-Site Request Forgery attacks.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Experience Manager | <=6.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7885 is considered to be of medium severity due to its potential for Cross-Site Request Forgery attacks.
To remediate CVE-2016-7885, upgrade to a newer version of Adobe Experience Manager that is not affected, specifically version 6.3 or later.
CVE-2016-7885 affects users of Adobe Experience Manager versions 6.2 and earlier.
CVE-2016-7885 can be exploited to perform Cross-Site Request Forgery (CSRF) attacks.
CVE-2016-7885 was disclosed on September 14, 2016.