cbcvebase.

Adobe Experience Manager vulnerabilities

1,019 known vulnerabilities affecting adobe/adobe_experience_manager.

Total CVEs
1,019
CISA KEV
1
actively exploited
Public exploits
6
Exploited in wild
5
Severity breakdown
CRITICAL8HIGH14MEDIUM987LOW10

Vulnerabilities

Page 32 of 51
CVE-2024-26044P4MEDIUMCVSS 5.4≤ 6.5.192024-03-18
CVE-2024-26044 [MEDIUM] CWE-79 CVE-2024-26044: Adobe Experience Manager versions 6.5.19 and earlier are affected by a DOM-based Cross-Site Scriptin Adobe Experience Manager versions 6.5.19 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into a webpage. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable script. This could result in arbitra
nvd
CVE-2024-26076P4MEDIUMCVSS 5.4≤ 6.5.192024-04-10
CVE-2024-26076 [MEDIUM] CWE-79 CVE-2024-26076: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26097P4MEDIUMCVSS 5.4≤ 6.5.192024-04-10
CVE-2024-26097 [MEDIUM] CWE-79 CVE-2024-26097: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26047P4MEDIUMCVSS 5.4≤ 6.5.192024-04-10
CVE-2024-26047 [MEDIUM] CWE-79 CVE-2024-26047: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26098P4MEDIUMCVSS 5.4≤ 6.5.192024-04-10
CVE-2024-26098 [MEDIUM] CWE-79 CVE-2024-26098: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26084P4MEDIUMCVSS 5.4≤ 6.5.192024-04-10
CVE-2024-26084 [MEDIUM] CWE-79 CVE-2024-26084: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26079P4MEDIUMCVSS 5.4≤ 6.5.192024-04-10
CVE-2024-26079 [MEDIUM] CWE-79 CVE-2024-26079: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-36176P4MEDIUMCVSS 5.4≤ 6.5.202024-06-13
CVE-2024-36176 [MEDIUM] CWE-79 CVE-2024-36176: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-36178P4MEDIUMCVSS 5.4≤ 6.5.202024-06-13
CVE-2024-36178 [MEDIUM] CWE-79 CVE-2024-36178: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-36177P4MEDIUMCVSS 5.4≤ 6.5.202024-06-13
CVE-2024-36177 [MEDIUM] CWE-79 CVE-2024-36177: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-36175P4MEDIUMCVSS 5.4≤ 6.5.202024-06-13
CVE-2024-36175 [MEDIUM] CWE-79 CVE-2024-36175: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26036P4MEDIUMCVSS 5.4≤ 6.5.202024-06-13
CVE-2024-26036 [MEDIUM] CWE-79 CVE-2024-26036: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-36174P4MEDIUMCVSS 5.4≤ 6.5.202024-06-13
CVE-2024-36174 [MEDIUM] CWE-79 CVE-2024-36174: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-36173P4MEDIUMCVSS 5.4≤ 6.5.202024-06-13
CVE-2024-36173 [MEDIUM] CWE-79 CVE-2024-36173: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-36179P4MEDIUMCVSS 5.4≤ 6.5.202024-06-13
CVE-2024-36179 [MEDIUM] CWE-79 CVE-2024-36179: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-36169P4MEDIUMCVSS 5.4≤ 6.5.202024-06-13
CVE-2024-36169 [MEDIUM] CWE-79 CVE-2024-36169: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26122P4MEDIUMCVSS 5.4≤ 6.5.192024-04-10
CVE-2024-26122 [MEDIUM] CWE-79 CVE-2024-26122: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-20778P4MEDIUMCVSS 5.4≤ 6.5.192024-04-10
CVE-2024-20778 [MEDIUM] CWE-79 CVE-2024-20778: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26046P4MEDIUMCVSS 5.4≤ 6.5.192024-04-10
CVE-2024-26046 [MEDIUM] CWE-79 CVE-2024-26046: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-20780P4MEDIUMCVSS 5.4≤ 6.5.192024-04-10
CVE-2024-20780 [MEDIUM] CWE-79 CVE-2024-20780: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
Adobe Experience Manager vulnerabilities | cvebase