First published: Sat Dec 09 2017(Updated: )
An issue was discovered in Adobe Experience Manager 6.3, 6.2, 6.1, 6.0. Sensitive tokens are included in http GET requests under certain circumstances.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Experience Manager | =6.1.0 | |
Adobe Experience Manager | =6.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-3111 is classified as a critical vulnerability due to the exposure of sensitive tokens.
To fix CVE-2017-3111, update Adobe Experience Manager to the latest version that addresses this vulnerability.
CVE-2017-3111 affects Adobe Experience Manager versions 6.0, 6.1, 6.2, and 6.3.
CVE-2017-3111 poses risks of unauthorized access to sensitive information due to tokens being exposed in HTTP GET requests.
CVE-2017-3111 is primarily considered a remote vulnerability as it can be exploited over the network by attackers.