First published: Sat Dec 09 2017(Updated: )
An issue was discovered in Adobe Experience Manager 6.3, 6.2, 6.1, 6.0. A cross-site scripting vulnerability in Apache Sling Servlets Post 2.3.20 has been resolved in Adobe Experience Manager.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Experience Manager | =6.0.0 | |
Adobe Experience Manager | =6.1.0 | |
Adobe Experience Manager | =6.2.0 | |
Adobe Experience Manager | =6.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-11296 is classified as moderate due to its potential for cross-site scripting attacks.
CVE-2017-11296 affects Adobe Experience Manager versions 6.0, 6.1, 6.2, and 6.3.
To fix CVE-2017-11296, upgrade your Adobe Experience Manager to the latest patched version provided by Adobe.
CVE-2017-11296 is a cross-site scripting (XSS) vulnerability found in Apache Sling Servlets.
There are no specific workarounds for CVE-2017-11296; the recommended action is to apply the available updates.