CVE-2017-3109: XSS
An issue was discovered in Adobe Experience Manager 6.3, 6.2, 6.1, 6.0. Adobe Experience Manager has a reflected cross-site scripting vulnerability in the HtmlRendererServlet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-3109?
CVE-2017-3109 is rated as medium severity due to its potential impact on application security.
How do I fix CVE-2017-3109?
To fix CVE-2017-3109, update Adobe Experience Manager to version 6.3 or later, as this version contains the necessary security patches.
What is the main issue caused by CVE-2017-3109?
The main issue caused by CVE-2017-3109 is a reflected cross-site scripting vulnerability that can allow attackers to execute arbitrary scripts in the context of the user's session.
Which versions of Adobe Experience Manager are affected by CVE-2017-3109?
CVE-2017-3109 affects Adobe Experience Manager versions 6.0, 6.1, 6.2, and 6.3.
Can CVE-2017-3109 be exploited remotely?
Yes, CVE-2017-3109 can be exploited remotely via specially crafted requests to the affected system.