CVE-2018-12807Improper Input Validation in Adobe Experience Manager

Severity
5.3MEDIUMNVD
EPSS
5.0%
top 10.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 29
Latest updateMay 14

Description

Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have an input validation bypass vulnerability. Successful exploitation could lead to unauthorized information modification.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages1 packages

NVDadobe/experience_manager6.1.2.16.1.2.16+2

🔴Vulnerability Details

1
GHSA
GHSA-x8c2-f475-phwh: Adobe Experience Manager versions 62022-05-14
CVE-2018-12807 — Improper Input Validation in Adobe | cvebase