First published: Fri Jun 12 2020(Updated: )
Adobe Experience Manager versions 6.5 and earlier have a blind server-side request forgery (ssrf) vulnerability. Successful exploitation could lead to sensitive information disclosure.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Experience Manager | >=6.4<6.4.8.1 | |
Adobe Experience Manager | >=6.5<6.5.5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9645 has a critical severity rating due to its potential for sensitive information disclosure.
To fix CVE-2020-9645, upgrade Adobe Experience Manager to the latest version that addresses this vulnerability.
CVE-2020-9645 affects Adobe Experience Manager versions 6.5 and earlier.
CVE-2020-9645 is classified as a blind server-side request forgery (SSRF) vulnerability.
Exploitation of CVE-2020-9645 could lead to unauthorized disclosure of sensitive information.