CVE-2019-8086: XEE
Published Oct 25, 2019
·Updated
Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a xml external entity injection vulnerability. Successful exploitation could lead to sensitive information disclosure.
Affected Software
4 affected components
Adobe Experience Manager=6.2
Adobe Experience Manager=6.3
Adobe Experience Manager=6.4
Adobe Experience Manager=6.5
Event History
Oct 25, 2019
CVE Published
via MITRE·03:17 PM
Data Sourced
via MITRE·03:17 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-8086?
CVE-2019-8086 is classified as a critical vulnerability due to its potential for sensitive information disclosure.
2
How do I fix CVE-2019-8086?
To fix CVE-2019-8086, update Adobe Experience Manager to the latest version as recommended by Adobe.
3
Which versions of Adobe Experience Manager are affected by CVE-2019-8086?
Adobe Experience Manager versions 6.2, 6.3, 6.4, and 6.5 are all affected by CVE-2019-8086.
4
What types of attacks can exploit CVE-2019-8086?
CVE-2019-8086 can be exploited through XML External Entity (XXE) injection attacks.
5
What could happen if CVE-2019-8086 is exploited?
If CVE-2019-8086 is successfully exploited, it could lead to the disclosure of sensitive information.