misc update

patch-1
sandeep 2024-01-28 17:42:40 +05:30
parent a8fdb9894e
commit d76bec3254
1 changed files with 7 additions and 4 deletions

View File

@ -1,8 +1,8 @@
id: CVE-2019-16469
info:
name: Adobe Experience Manager expression language injection vulnerability
author: Domenico Veneziano
name: Adobe Experience Manager - Expression Language Injection
author: DomenicoVeneziano
severity: high
description: |
Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 has an expression language injection vulnerability.
@ -14,12 +14,15 @@ info:
- https://nvd.nist.gov/vuln/detail/CVE-2019-16469
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-16469
- https://nozero.io/en/cve-2019-16469-adobe-aem-expression-language-injection/
- https://owasp.org/www-community/vulnerabilities/Expression_Language_Injection
classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
cvss-score: 7.5
cve-id: CVE-2019-16469
cwe-id: CWE-1336
tags: cve,cve2019,aem,ssti
cwe-id: CWE-917
metadata:
shodan-query: http.component:"Adobe Experience Manager"
tags: cve,cve2019,aem,eli
http:
- method: GET