CVE-2019-7954: XSS
Published Jul 18, 2019
·Updated
Adobe Experience Manager version 6.4 and ealier have a Stored Cross-site Scripting vulnerability. Successful exploitation could lead to Sensitive Information disclosure in the context of the current user.
Affected Software
1 affected component
Adobe Experience Manager>=6.2<=6.5
Event History
Jul 18, 2019
CVE Published
via MITRE·09:49 PM
Data Sourced
via MITRE·09:49 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-7954?
CVE-2019-7954 has a CVSS score indicating it is a medium-severity vulnerability.
2
How do I fix CVE-2019-7954?
To fix CVE-2019-7954, update Adobe Experience Manager to version 6.5 or later.
3
What can be exposed by exploiting CVE-2019-7954?
Exploitation of CVE-2019-7954 can lead to sensitive information disclosure impacting the current user.
4
Which versions of Adobe Experience Manager are vulnerable to CVE-2019-7954?
Adobe Experience Manager versions 6.4 and earlier are vulnerable to CVE-2019-7954.
5
What type of vulnerability is CVE-2019-7954?
CVE-2019-7954 is classified as a Stored Cross-site Scripting vulnerability.