CVE-2018-19724: XSS
Published Jan 28, 2019
·Updated
Adobe Experience Manager Forms versions 6.2, 6.3 and 6.4 have a stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
Affected Software
3 affected components
Adobe Experience Manager=6.2.0
Adobe Experience Manager=6.3.0
Adobe Experience Manager=6.4.0
Remediation
Event History
Jan 28, 2019
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-19724?
CVE-2018-19724 is considered a medium severity vulnerability that can lead to stored cross-site scripting attacks.
2
How do I fix CVE-2018-19724?
To fix CVE-2018-19724, you should apply the latest security patches provided by Adobe for affected versions of Adobe Experience Manager Forms.
3
Which versions of Adobe Experience Manager are affected by CVE-2018-19724?
CVE-2018-19724 affects Adobe Experience Manager Forms versions 6.2, 6.3, and 6.4.
4
What could an attacker achieve by exploiting CVE-2018-19724?
An attacker exploiting CVE-2018-19724 could potentially gain access to sensitive information through stored cross-site scripting.
5
Is user interaction required to exploit CVE-2018-19724?
Exploitation of CVE-2018-19724 can occur without user interaction, making it more severe.