Adobe Experience Manager vulnerabilities
1,165 known vulnerabilities affecting adobe/experience_manager.
Total CVEs
1,165
CISA KEV
0
Public exploits
7
Exploited in wild
3
Severity breakdown
CRITICAL13HIGH29MEDIUM1113LOW10
Vulnerabilities
Page 38 of 59
CVE-2024-26035P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26035 [MEDIUM] CWE-79 CVE-2024-26035: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26125P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26125 [MEDIUM] CWE-79 CVE-2024-26125: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26052P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26052 [MEDIUM] CWE-79 CVE-2024-26052: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26041P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26041 [MEDIUM] CWE-79 CVE-2024-26041: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26033P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26033 [MEDIUM] CWE-79 CVE-2024-26033: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26038P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26038 [MEDIUM] CWE-79 CVE-2024-26038: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26124P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26124 [MEDIUM] CWE-79 CVE-2024-26124: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26056P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26056 [MEDIUM] CWE-79 CVE-2024-26056: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26028P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26028 [MEDIUM] CWE-79 CVE-2024-26028: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26051P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26051 [MEDIUM] CWE-79 CVE-2024-26051: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26030P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26030 [MEDIUM] CWE-79 CVE-2024-26030: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26059P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26059 [MEDIUM] CWE-79 CVE-2024-26059: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26073P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26073 [MEDIUM] CWE-79 CVE-2024-26073: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26067P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26067 [MEDIUM] CWE-79 CVE-2024-26067: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26120P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26120 [MEDIUM] CWE-79 CVE-2024-26120: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26062P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26062 [MEDIUM] CWE-79 CVE-2024-26062: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26040P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26040 [MEDIUM] CWE-79 CVE-2024-26040: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26045P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26045 [MEDIUM] CWE-79 CVE-2024-26045: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26061P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26061 [MEDIUM] CWE-79 CVE-2024-26061: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26069P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26069 [MEDIUM] CWE-79 CVE-2024-26069: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd