CVE-2017-3111: Infoleak
Published Dec 9, 2017
·Updated
An issue was discovered in Adobe Experience Manager 6.3, 6.2, 6.1, 6.0. Sensitive tokens are included in http GET requests under certain circumstances.
Affected Software
2 affected components
Adobe Experience Manager=6.1.0
Adobe Experience Manager=6.2.0
Event History
Dec 9, 2017
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-3111?
CVE-2017-3111 is classified as a critical vulnerability due to the exposure of sensitive tokens.
2
How do I fix CVE-2017-3111?
To fix CVE-2017-3111, update Adobe Experience Manager to the latest version that addresses this vulnerability.
3
What versions of Adobe Experience Manager are affected by CVE-2017-3111?
CVE-2017-3111 affects Adobe Experience Manager versions 6.0, 6.1, 6.2, and 6.3.
4
What risks are associated with CVE-2017-3111?
CVE-2017-3111 poses risks of unauthorized access to sensitive information due to tokens being exposed in HTTP GET requests.
5
Is CVE-2017-3111 a remote or local vulnerability?
CVE-2017-3111 is primarily considered a remote vulnerability as it can be exploited over the network by attackers.