CVE-2016-4169
- EPSS 2.4%
- Veröffentlicht 09.08.2016 20:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Adobe Experience Manager 6.0, 6.1, and 6.2 allow attackers to obtain sensitive audit log event information via unspecified vectors.
CVE-2016-4168
- EPSS 0.64%
- Veröffentlicht 09.08.2016 20:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in Adobe Experience Manager 5.6.1, 6.0, and 6.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2016-0958
- EPSS 0.64%
- Veröffentlicht 10.02.2016 20:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Adobe Experience Manager 5.6.1, 6.0.0, and 6.1.0 might allow remote attackers to have an unspecified impact via a crafted serialized Java object.
CVE-2016-0957
- EPSS 93.19%
- Veröffentlicht 10.02.2016 20:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
Dispatcher before 4.1.5 in Adobe Experience Manager 5.6.1, 6.0.0, and 6.1.0 does not properly implement a URL filter, which allows remote attackers to bypass dispatcher rules via unspecified vectors.
CVE-2016-0956
- EPSS 13.28%
- Veröffentlicht 10.02.2016 20:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Servlets Post component 2.3.6 in Apache Sling, as used in Adobe Experience Manager 5.6.1, 6.0.0, and 6.1.0, allows remote attackers to obtain sensitive information via unspecified vectors.
CVE-2016-0955
- EPSS 0.33%
- Veröffentlicht 10.02.2016 20:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in Adobe Experience Manager (AEM) 6.1.0 allows remote authenticated users to inject arbitrary web script or HTML via a folder title field that is mishandled in the Deletion popup dialog.