CVE-2020-9643: SSRF
Published Jun 12, 2020
·Updated
Adobe Experience Manager versions 6.5 and earlier have a server-side request forgery (ssrf) vulnerability. Successful exploitation could lead to sensitive information disclosure.
Affected Software
2 affected components
Adobe Experience Manager>=6.4<6.4.8.1
Adobe Experience Manager>=6.5<6.5.5.0
Remediation
Event History
Jun 12, 2020
CVE Published
via MITRE·01:12 PM
Data Sourced
via MITRE·01:12 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-9643?
CVE-2020-9643 has been rated as critical, indicating a high potential for impact if exploited.
2
How do I fix CVE-2020-9643?
To address CVE-2020-9643, update Adobe Experience Manager to the latest version as recommended by Adobe.
3
What versions of Adobe Experience Manager are affected by CVE-2020-9643?
CVE-2020-9643 affects Adobe Experience Manager versions 6.5 and earlier.
4
What types of attacks can exploit CVE-2020-9643?
CVE-2020-9643 can be exploited through server-side request forgery (SSRF) attacks, potentially leading to sensitive information disclosure.
5
Is there a workaround for CVE-2020-9643 if I cannot immediately update?
There are no official workarounds for CVE-2020-9643, so immediate updating is recommended to mitigate the vulnerability.