Adobe Experience Manager version 6.5.14 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If a low-privileged attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
2022-12-19T20:15:12.560
2024-11-21T07:24:48.670
Modified
CVSSv3.1: 5.4 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | adobe | experience_manager | < 6.5.15.0 | Yes |
Application | adobe | experience_manager_cloud_service | < 2022.10.0 | Yes |