diff --git a/http/cves/2019/CVE-2019-16469.yaml b/http/cves/2019/CVE-2019-16469.yaml index 9da6afe546..8585a04f56 100644 --- a/http/cves/2019/CVE-2019-16469.yaml +++ b/http/cves/2019/CVE-2019-16469.yaml @@ -1,8 +1,8 @@ id: CVE-2019-16469 info: - name: Adobe Experience Manager expression language injection vulnerability - author: Domenico Veneziano + name: Adobe Experience Manager - Expression Language Injection + author: DomenicoVeneziano severity: high description: | Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 has an expression language injection vulnerability. @@ -14,12 +14,15 @@ info: - https://nvd.nist.gov/vuln/detail/CVE-2019-16469 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-16469 - https://nozero.io/en/cve-2019-16469-adobe-aem-expression-language-injection/ + - https://owasp.org/www-community/vulnerabilities/Expression_Language_Injection classification: cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N cvss-score: 7.5 cve-id: CVE-2019-16469 - cwe-id: CWE-1336 - tags: cve,cve2019,aem,ssti + cwe-id: CWE-917 + metadata: + shodan-query: http.component:"Adobe Experience Manager" + tags: cve,cve2019,aem,eli http: - method: GET