CVE-2018-15970: XSS
Published Oct 17, 2018
·Updated
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
Affected Software
5 affected components
Adobe Experience Manager=6.0.0
Adobe Experience Manager=6.1.0
Adobe Experience Manager=6.2.0
Adobe Experience Manager=6.3.0
Adobe Experience Manager=6.4.0
Remediation
Event History
Oct 17, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-15970?
CVE-2018-15970 has a medium severity rating due to its potential for sensitive information disclosure.
2
How do I fix CVE-2018-15970?
To fix CVE-2018-15970, update Adobe Experience Manager to the latest version that addresses this vulnerability.
3
Which versions of Adobe Experience Manager are affected by CVE-2018-15970?
CVE-2018-15970 affects Adobe Experience Manager versions 6.0, 6.1, 6.2, 6.3, and 6.4.
4
What type of vulnerability is CVE-2018-15970?
CVE-2018-15970 is a reflected cross-site scripting (XSS) vulnerability.
5
What could happen if CVE-2018-15970 is exploited?
If exploited, CVE-2018-15970 could lead to the disclosure of sensitive information.