CVE-2018-15971: XSS
Published Oct 17, 2018
·Updated
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
Affected Software
5 affected components
Adobe Experience Manager=6.0.0
Adobe Experience Manager=6.1.0
Adobe Experience Manager=6.2.0
Adobe Experience Manager=6.3.0
Adobe Experience Manager=6.4.0
Remediation
Event History
Oct 17, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-15971?
CVE-2018-15971 has a severity rating that indicates a reflected cross-site scripting vulnerability could lead to sensitive information disclosure.
2
How do I fix CVE-2018-15971?
To fix CVE-2018-15971, update Adobe Experience Manager to the latest patched version available.
3
Which versions of Adobe Experience Manager are affected by CVE-2018-15971?
CVE-2018-15971 affects Adobe Experience Manager versions 6.0, 6.1, 6.2, 6.3, and 6.4.
4
What impact could exploitation of CVE-2018-15971 have?
Exploitation of CVE-2018-15971 could potentially lead to the disclosure of sensitive information.
5
Is there a public exploit available for CVE-2018-15971?
As of now, there are no known public exploits reported for CVE-2018-15971.