Adobe Experience Manager vulnerabilities
962 known vulnerabilities affecting adobe/adobe_experience_manager.
Total CVEs
962
CISA KEV
1
actively exploited
Public exploits
5
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH14MEDIUM932LOW8
Vulnerabilities
Page 40 of 49
CVE-2023-48601MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48601 [MEDIUM] CWE-79 CVE-2023-48601: Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scriptin
Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48607MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48607 [MEDIUM] CWE-79 CVE-2023-48607: Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scriptin
Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48473MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48473 [MEDIUM] CWE-79 CVE-2023-48473: Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-bas
Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-based XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48488MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48488 [MEDIUM] CWE-79 CVE-2023-48488: Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-bas
Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-based XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48505MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48505 [MEDIUM] CWE-79 CVE-2023-48505: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48591MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48591 [MEDIUM] CWE-79 CVE-2023-48591: Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-bas
Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-based XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48455MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48455 [MEDIUM] CWE-79 CVE-2023-48455: Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scriptin
Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48503MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48503 [MEDIUM] CWE-79 CVE-2023-48503: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48573MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48573 [MEDIUM] CWE-79 CVE-2023-48573: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48568MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48568 [MEDIUM] CWE-79 CVE-2023-48568: Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-bas
Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-based XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48447MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48447 [MEDIUM] CWE-79 CVE-2023-48447: Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scriptin
Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48572MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48572 [MEDIUM] CWE-79 CVE-2023-48572: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48534MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48534 [MEDIUM] CWE-79 CVE-2023-48534: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48460MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48460 [MEDIUM] CWE-79 CVE-2023-48460: Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-bas
Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-based XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48504MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48504 [MEDIUM] CWE-79 CVE-2023-48504: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48475MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48475 [MEDIUM] CWE-79 CVE-2023-48475: Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-bas
Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-based XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48586MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48586 [MEDIUM] CWE-79 CVE-2023-48586: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48581MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48581 [MEDIUM] CWE-79 CVE-2023-48581: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48497MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48497 [MEDIUM] CWE-79 CVE-2023-48497: Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scriptin
Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd
CVE-2023-48456MEDIUMCVSS 5.4≤ 6.5.182023-12-15
CVE-2023-48456 [MEDIUM] CWE-79 CVE-2023-48456: Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-bas
Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-based XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
nvd