Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qr5v-fwp7-vh85

Опубликовано: 14 янв. 2022
Источник: github
Github: Не прошло ревью

Описание

AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a dispatcher bypass vulnerability that could be abused to evade security controls. Sensitive areas of the web application may be exposed through exploitation of the vulnerability.

AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a dispatcher bypass vulnerability that could be abused to evade security controls. Sensitive areas of the web application may be exposed through exploitation of the vulnerability.

EPSS

Процентиль: 85%
0.02343
Низкий

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 6.5
nvd
около 4 лет назад

AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a dispatcher bypass vulnerability that could be abused to evade security controls. Sensitive areas of the web application may be exposed through exploitation of the vulnerability.

CVSS3: 6.5
fstec
около 4 лет назад

Уязвимость системы управления контентом и медиа-данными Adobe Experience Manager, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю выполнить обход функций безопасности

EPSS

Процентиль: 85%
0.02343
Низкий

Дефекты

CWE-20