← All CVEs

CVE-2016-0956

high · 7.5

The Servlets Post component 2.3.6 in Apache Sling, as used in Adobe Experience Manager 5.6.1, 6.0.0, and 6.1.0, allows remote attackers to obtain sensitive information via unspecified vectors.

7.5
CVSS
51.2%
EPSS (exploit prob.)
99th
EPSS percentile
2016-02-10
Published

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Weaknesses

CWE-200

Affected products

VendorProductAffected versions
apacheslingall versions
adobeexperience_manager5.6.1
adobeexperience_manager6.0.0
adobeexperience_manager6.1.0
applemac_os_xall versions
linuxlinux_kernelall versions
microsoftwindowsall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2016-0956