HTTP: Apache Sling Framework Information Disclosure

This signature detects attempts to exploit a known vulnerability against Apache Sling Framework. A successful attack allows remote attackers to obtain sensitive information.

Extended Description

The Servlets Post component 2.3.6 in Apache Sling, as used in Adobe Experience Manager 5.6.1, 6.0.0, and 6.1.0, allows remote attackers to obtain sensitive information via unspecified vectors.

Affected Products

Apache sling

References

CVE: CVE-2016-0956

Short Name
HTTP:APACHE:SLING-ID
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Apache CVE-2016-0956 Disclosure Framework Information Sling
Release Date
09/05/2017
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3377
False Positive
Unknown
Vendors

Apache

CVSS Score

7.8

Found a potential security threat?