CVE-2019-7847: XEE
Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Improper Restriction of XML External Entity Reference ('XXE') vulnerability. Successful exploitation could lead to Arbitrary read access to the file system in the context of the current user.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Adobe Campaign Classic vulnerability?
The vulnerability ID for this Adobe Campaign Classic vulnerability is CVE-2019-7847.
What is the severity level of CVE-2019-7847?
The severity level of CVE-2019-7847 is high with a CVSS score of 7.5.
What is the description of CVE-2019-7847?
CVE-2019-7847 is an Improper Restriction of XML External Entity Reference ('XXE') vulnerability in Adobe Campaign Classic version 18.10.5-8984 and earlier versions. Successful exploitation could lead to arbitrary read access to the file system in the context of the current user.
Which software versions are affected by CVE-2019-7847?
Adobe Campaign Classic version 18.10.5-8984 and earlier versions are affected by CVE-2019-7847.
How can I fix CVE-2019-7847?
To fix CVE-2019-7847, update Adobe Campaign Classic to a version that is not impacted by the vulnerability.