Show filters
202 Total Results
Displaying 111-120 of 202
Sort by:
Attacker Value
Unknown
CVE-2023-48447
Disclosure Date: December 15, 2023 (last updated December 19, 2023)
Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
0
Attacker Value
Unknown
CVE-2023-48446
Disclosure Date: December 15, 2023 (last updated December 19, 2023)
Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-based XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
0
Attacker Value
Unknown
CVE-2023-48445
Disclosure Date: December 15, 2023 (last updated December 19, 2023)
Adobe Experience Manager versions 6.5.18 and earlier are affected by a Cross-site Scripting (DOM-based XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
0
Attacker Value
Unknown
CVE-2023-48444
Disclosure Date: December 15, 2023 (last updated December 19, 2023)
Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.
0
Attacker Value
Unknown
CVE-2023-38215
Disclosure Date: September 13, 2023 (last updated October 08, 2023)
Adobe Experience Manager versions 6.5.17 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
0
Attacker Value
Unknown
CVE-2023-29304
Disclosure Date: June 13, 2023 (last updated February 25, 2025)
Adobe Experience Manager versions 6.5.16.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
0
Attacker Value
Unknown
CVE-2023-29322
Disclosure Date: June 13, 2023 (last updated February 25, 2025)
Adobe Experience Manager versions 6.5.16.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
0
Attacker Value
Unknown
CVE-2023-29307
Disclosure Date: June 13, 2023 (last updated February 25, 2025)
Adobe Experience Manager versions 6.5.16.0 (and earlier) is affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. A low-privilege authenticated attacker could leverage this vulnerability to redirect users to malicious websites. Exploitation of this issue requires user interaction.
0
Attacker Value
Unknown
CVE-2023-29302
Disclosure Date: June 13, 2023 (last updated February 25, 2025)
Adobe Experience Manager versions 6.5.16.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
0
Attacker Value
Unknown
CVE-2023-22271
Disclosure Date: March 14, 2023 (last updated February 24, 2025)
Experience Manager versions 6.5.15.0 (and earlier) are affected by a Weak Cryptography for Passwords vulnerability that can lead to a security feature bypass. A low-privileged attacker can exploit this in order to decrypt a user's password. The attack complexity is high since a successful exploitation requires to already have in possession this encrypted secret.
0