CVE-2018-4931: XSS
Published May 19, 2018
·Updated
Adobe Experience Manager versions 6.1 and earlier have an exploitable stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
Affected Software
1 affected component
Adobe Experience Manager<=6.1.0
Event History
May 19, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-4931?
CVE-2018-4931 is classified as a high-severity vulnerability due to the potential for sensitive information disclosure.
2
How do I fix CVE-2018-4931?
To fix CVE-2018-4931, upgrade to a version of Adobe Experience Manager that is later than 6.1.
3
What types of attacks are possible with CVE-2018-4931?
CVE-2018-4931 allows for stored cross-site scripting attacks, which can lead to unauthorized access to sensitive information.
4
Which versions of Adobe Experience Manager are affected by CVE-2018-4931?
CVE-2018-4931 affects Adobe Experience Manager versions 6.1 and earlier.
5
Can CVE-2018-4931 be exploited remotely?
Yes, CVE-2018-4931 can be exploited remotely, allowing attackers to execute malicious scripts in the context of the affected user's session.