Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6cr4-774r-vpp6

Опубликовано: 09 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Adobe Experience Manager versions 6.5.23.0 and earlier are affected by an XML Injection vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to manipulate XML queries and gain limited unauthorized write access.

Adobe Experience Manager versions 6.5.23.0 and earlier are affected by an XML Injection vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to manipulate XML queries and gain limited unauthorized write access.

EPSS

Процентиль: 91%
0.06446
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-91

Связанные уязвимости

CVSS3: 4.3
nvd
5 месяцев назад

Adobe Experience Manager versions 6.5.23.0 and earlier are affected by an XML Injection vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to manipulate XML queries and gain limited unauthorized write access.

CVSS3: 4.3
fstec
5 месяцев назад

Уязвимость системы управления контентом и медиа-данными Adobe Experience Manager (AEM), связанная с ошибками в обработке XML-запросов, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 91%
0.06446
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-91