Adobe Experience Manager vulnerabilities
1,269 known vulnerabilities affecting adobe/experience_manager.
Total CVEs
1,269
CISA KEV
0
Public exploits
7
Exploited in wild
3
Severity breakdown
CRITICAL15HIGH30MEDIUM1213LOW11
Vulnerabilities
Page 44 of 64
CVE-2024-36162P4MEDIUMCVSS 5.4fixed in 6.5.21fixed in 2024.52024-06-13
CVE-2024-36162 [MEDIUM] CWE-79 CVE-2024-36162: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26070P4MEDIUMCVSS 5.4fixed in 6.5.21fixed in 2024.52024-06-13
CVE-2024-26070 [MEDIUM] CWE-79 CVE-2024-26070: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26075P4MEDIUMCVSS 5.4fixed in 6.5.21fixed in 2024.52024-06-13
CVE-2024-26075 [MEDIUM] CWE-79 CVE-2024-26075: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-36214P4MEDIUMCVSS 5.4fixed in 6.5.21fixed in 2024.52024-06-13
CVE-2024-36214 [MEDIUM] CWE-79 CVE-2024-36214: Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26034P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26034 [MEDIUM] CWE-79 CVE-2024-26034: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26094P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26094 [MEDIUM] CWE-79 CVE-2024-26094: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26031P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26031 [MEDIUM] CWE-79 CVE-2024-26031: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26035P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26035 [MEDIUM] CWE-79 CVE-2024-26035: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26125P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26125 [MEDIUM] CWE-79 CVE-2024-26125: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26052P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26052 [MEDIUM] CWE-79 CVE-2024-26052: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26041P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26041 [MEDIUM] CWE-79 CVE-2024-26041: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26033P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26033 [MEDIUM] CWE-79 CVE-2024-26033: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26038P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26038 [MEDIUM] CWE-79 CVE-2024-26038: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26124P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26124 [MEDIUM] CWE-79 CVE-2024-26124: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26056P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26056 [MEDIUM] CWE-79 CVE-2024-26056: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26028P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26028 [MEDIUM] CWE-79 CVE-2024-26028: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26051P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26051 [MEDIUM] CWE-79 CVE-2024-26051: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26030P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26030 [MEDIUM] CWE-79 CVE-2024-26030: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26059P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26059 [MEDIUM] CWE-79 CVE-2024-26059: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2024-26073P4MEDIUMCVSS 5.4fixed in 6.5.20.0fixed in 2024.3.02024-03-18
CVE-2024-26073 [MEDIUM] CWE-79 CVE-2024-26073: Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd