cbcvebase.

Adobe Experience Manager Cloud Service vulnerabilities

170 known vulnerabilities affecting adobe/experience_manager_cloud_service.

Total CVEs
170
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM170

Vulnerabilities

Page 1 of 9
CVE-2023-22271P4MEDIUMCVSS 5.3fixed in 2023.1.02023-03-22
CVE-2023-22271 [MEDIUM] CWE-261 CVE-2023-22271: Experience Manager versions 6.5.15.0 (and earlier) are affected by a Weak Cryptography for Passwords Experience Manager versions 6.5.15.0 (and earlier) are affected by a Weak Cryptography for Passwords vulnerability that can lead to a security feature bypass. A low-privileged attacker can exploit this in order to decrypt a user's password. The attack complexity is high since a successful exploitation requires to already have in possession this encr
nvd
CVE-2023-48538P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48538 [MEDIUM] CWE-79 CVE-2023-48538: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48553P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48553 [MEDIUM] CWE-79 CVE-2023-48553: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48543P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48543 [MEDIUM] CWE-79 CVE-2023-48543: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48555P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48555 [MEDIUM] CWE-79 CVE-2023-48555: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48537P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48537 [MEDIUM] CWE-79 CVE-2023-48537: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48542P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48542 [MEDIUM] CWE-79 CVE-2023-48542: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48545P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48545 [MEDIUM] CWE-79 CVE-2023-48545: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48548P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48548 [MEDIUM] CWE-79 CVE-2023-48548: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48505P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48505 [MEDIUM] CWE-79 CVE-2023-48505: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48503P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48503 [MEDIUM] CWE-79 CVE-2023-48503: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48504P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48504 [MEDIUM] CWE-79 CVE-2023-48504: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48554P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48554 [MEDIUM] CWE-79 CVE-2023-48554: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48481P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48481 [MEDIUM] CWE-79 CVE-2023-48481: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48512P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48512 [MEDIUM] CWE-79 CVE-2023-48512: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48523P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48523 [MEDIUM] CWE-79 CVE-2023-48523: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48513P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48513 [MEDIUM] CWE-79 CVE-2023-48513: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48546P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48546 [MEDIUM] CWE-79 CVE-2023-48546: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48540P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48540 [MEDIUM] CWE-79 CVE-2023-48540: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
CVE-2023-48547P4MEDIUMCVSS 5.4fixed in 2023.112023-12-15
CVE-2023-48547 [MEDIUM] CWE-79 CVE-2023-48547: Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting ( Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
nvd
Adobe Experience Manager Cloud Service vulnerabilities | cvebase