First published: Thu Sep 06 2018(Updated: )
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a Cross-site Scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Experience Manager | >=6.3.2.1<=6.3.2.2 | |
Adobe Experience Manager | =6.4 | |
Adobe Experience Manager | >=6.2.1.1<=6.2.1.14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-5005 is classified as a moderate severity Cross-site Scripting vulnerability affecting Adobe Experience Manager.
To remediate CVE-2018-5005, upgrade Adobe Experience Manager to the latest version available.
CVE-2018-5005 affects Adobe Experience Manager versions 6.0 through 6.4, specifically certain subversions.
Successful exploitation of CVE-2018-5005 may allow an attacker to disclose sensitive information.
CVE-2018-5005 is primarily a client-side vulnerability as it involves Cross-site Scripting.