Vulnerabilities > Adobe > Experience Manager > 6.1.2.10

DATE CVE VULNERABILITY TITLE RISK
2017-08-11 CVE-2017-3108 Unrestricted Upload of File with Dangerous Type vulnerability in Adobe Experience Manager
Adobe Experience Manager 6.2 and earlier has a malicious file execution vulnerability.
network
low complexity
adobe CWE-434
critical
9.8
2017-08-11 CVE-2017-3107 Information Exposure vulnerability in Adobe Experience Manager
Adobe Experience Manager 6.3 and earlier has a misconfiguration vulnerability.
network
low complexity
adobe CWE-200
7.5
2016-12-15 CVE-2016-7885 Cross-Site Request Forgery (CSRF) vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.2 and earlier have a vulnerability that could be used in Cross-Site Request Forgery attacks.
network
low complexity
adobe CWE-352
8.8
2016-12-15 CVE-2016-7882 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.2 and earlier have an input validation issue in the WCMDebug filter that could be used in cross-site scripting attacks.
network
low complexity
adobe CWE-79
6.1