PT-2016-4487 · Adobe · Dispatcher+1

Published

2016-02-10

·

Updated

2016-02-25

·

CVE-2016-0957

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Adobe Experience Manager versions 5.6.1, 6.0.0, and 6.1.0 through versions prior to 4.1.5 of Dispatcher
Description The issue is related to the improper implementation of a URL filter in Dispatcher, which allows remote attackers to bypass dispatcher rules.
Recommendations For Adobe Experience Manager versions 5.6.1, 6.0.0, and 6.1.0, update Dispatcher to version 4.1.5 or later. At the moment, there is no additional information about other mitigation measures for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2016-0957

Affected Products

Experience Manager
Dispatcher