Adobe Experience Manager vulnerabilities

962 known vulnerabilities affecting adobe/adobe_experience_manager.

Total CVEs
962
CISA KEV
1
actively exploited
Public exploits
5
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH14MEDIUM932LOW8

Vulnerabilities

Page 48 of 49
CVE-2019-16467MEDIUMCVSS 6.1v6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 versions2020-01-15
CVE-2019-16467 [MEDIUM] CWE-79 CVE-2019-16467: Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scrip Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-16466MEDIUMCVSS 6.1v6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 versions2020-01-15
CVE-2019-16466 [MEDIUM] CWE-79 CVE-2019-16466: Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scrip Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8088CRITICALCVSS 9.8v6.5, 6.4, 6.3, 6.22019-10-25
CVE-2019-8088 [CRITICAL] CWE-77 CVE-2019-8088: Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a command injection vulnerability. Succ Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a command injection vulnerability. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2019-8081HIGHCVSS 7.5v6.5, 6.4, 6.3, 6.22019-10-25
CVE-2019-8081 [HIGH] CVE-2019-8081: Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have an authentication bypass vulnerability. Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have an authentication bypass vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8082HIGHCVSS 7.5v6.4, 6.3, 6.22019-10-25
CVE-2019-8082 [HIGH] CWE-611 CVE-2019-8082: Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a xml external entity injection vulnerabilit Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a xml external entity injection vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8087HIGHCVSS 7.5v6.5, 6.4, 6.3, 6.22019-10-25
CVE-2019-8087 [HIGH] CWE-611 CVE-2019-8087: Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a xml external entity injection vulnera Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a xml external entity injection vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8086HIGHCVSS 7.5PoCv6.5v6.4+2 more2019-10-25
CVE-2019-8086 [HIGH] CWE-611 CVE-2019-8086: Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a xml external entity injection vulnera Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a xml external entity injection vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8085MEDIUMCVSS 6.1v6.5, 6.4, 6.3, 6.22019-10-25
CVE-2019-8085 [MEDIUM] CWE-79 CVE-2019-8085: Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a reflected cross site scripting vulner Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8234MEDIUMCVSS 6.5v6.4, 6.3, 6.22019-10-25
CVE-2019-8234 [MEDIUM] CWE-352 CVE-2019-8234: Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a cross-site request forgery vulnerability. Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a cross-site request forgery vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8084MEDIUMCVSS 6.1v6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 versions2019-10-25
CVE-2019-8084 [MEDIUM] CWE-79 CVE-2019-8084: Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a reflected cross site scripting vulner Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8083MEDIUMCVSS 6.1v6.5, 6.4, 6.32019-10-25
CVE-2019-8083 [MEDIUM] CWE-79 CVE-2019-8083: Adobe Experience Manager versions 6.5, 6.4 and 6.3 have a cross site scripting vulnerability. Succes Adobe Experience Manager versions 6.5, 6.4 and 6.3 have a cross site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8078MEDIUMCVSS 6.1v6.4, 6.3, 6.22019-10-24
CVE-2019-8078 [MEDIUM] CWE-79 CVE-2019-8078: Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerabili Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8079MEDIUMCVSS 6.1v6.4, 6.3, 6.2, 6.1, and 6.0 versions2019-10-24
CVE-2019-8079 [MEDIUM] CWE-79 CVE-2019-8079: Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross site scripting vul Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2019-8080MEDIUMCVSS 6.1v6.4, 6.32019-10-24
CVE-2019-8080 [MEDIUM] CWE-79 CVE-2019-8080: Adobe Experience Manager versions 6.4 and 6.3 have a stored cross site scripting vulnerability. Succ Adobe Experience Manager versions 6.4 and 6.3 have a stored cross site scripting vulnerability. Successful exploitation could lead to privilege escalation.
nvd
CVE-2019-7964CRITICALCVSS 9.8v6.5, and 6.4 versions2019-08-16
CVE-2019-7964 [CRITICAL] CVE-2019-7964: Adobe Experience Manager versions 6.5, and 6.4 have an authentication bypass vulnerability. Successf Adobe Experience Manager versions 6.5, and 6.4 have an authentication bypass vulnerability. Successful exploitation could lead to remote code execution.
nvd
CVE-2018-19726MEDIUMCVSS 6.1v6.4, 6.3, 6.2, 6.1, and 6.0 versions2019-01-28
CVE-2018-19726 [MEDIUM] CWE-79 CVE-2018-19726: Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross-site scripting vul Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2018-19727MEDIUMCVSS 6.1v6.4, 6.3, 6.2, 6.1, and 6.0 versions2019-01-28
CVE-2018-19727 [MEDIUM] CWE-79 CVE-2018-19727: Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2018-15971MEDIUMCVSS 6.1v6.4, 6.3, 6.2, 6.1, and 6.0 versions2018-10-17
CVE-2018-15971 [MEDIUM] CWE-79 CVE-2018-15971: Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2018-15970MEDIUMCVSS 6.1v6.4, 6.3, 6.2, 6.1, and 6.0 versions2018-10-17
CVE-2018-15970 [MEDIUM] CWE-79 CVE-2018-15970: Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd
CVE-2018-15969MEDIUMCVSS 6.1v6.4, 6.3, 6.2, 6.1, and 6.0 versions2018-10-17
CVE-2018-15969 [MEDIUM] CWE-79 CVE-2018-15969: Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross-site scripting vul Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
nvd