First published: Wed Aug 29 2018(Updated: )
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Experience Manager | >=6.1.2.1<=6.1.2.16 | |
Adobe Experience Manager | >=6.2.1.1<=6.2.1.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-12806 is classified as a medium severity reflected cross-site scripting vulnerability.
To fix CVE-2018-12806, update Adobe Experience Manager to the latest version that is not affected by this vulnerability.
Affected versions include Adobe Experience Manager 6.4, 6.3, 6.2, 6.1, and 6.0.
Successful exploitation of CVE-2018-12806 could lead to the disclosure of sensitive information from the application.
There are no known workarounds for CVE-2018-12806; updating the software is the recommended approach.