PT-2019-6108 · Adobe · Experience Manager

Published

2019-10-15

·

Updated

2024-11-18

·

CVE-2019-8086

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Adobe Experience Manager versions 6.2 through 6.5
Description The issue is related to an xml external entity injection vulnerability. It is caused by incorrect restriction of XML external entities. Successful exploitation could lead to sensitive information disclosure.
Recommendations For Adobe Experience Manager versions 6.2 through 6.5, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

XXE

Weakness Enumeration

Related Identifiers

BDU:2021-05670
CVE-2019-8086

Affected Products

Experience Manager