Логотип exploitDog
bind:CVE-2024-52840
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-52840

Количество 3

Количество 3

nvd логотип

CVE-2024-52840

около 1 года назад

Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the context of the victim's browser session. By manipulating a DOM element through a crafted URL or user input, the attacker can inject malicious scripts that run when the page is rendered. This type of attack requires user interaction, as the victim would need to access the manipulated URL or input the malicious data themselves.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-qfv6-m2pj-vx4r

около 1 года назад

Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the context of the victim's browser session. By manipulating a DOM element through a crafted URL or user input, the attacker can inject malicious scripts that run when the page is rendered. This type of attack requires user interaction, as the victim would need to access the manipulated URL or input the malicious data themselves.

CVSS3: 5.4
EPSS: Низкий
fstec логотип

BDU:2025-00050

около 1 года назад

Уязвимость системы управления контентом и медиа-данными Adobe Experience Manager связана с недостаточной защитой структуры веб-страницы, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-52840

Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the context of the victim's browser session. By manipulating a DOM element through a crafted URL or user input, the attacker can inject malicious scripts that run when the page is rendered. This type of attack requires user interaction, as the victim would need to access the manipulated URL or input the malicious data themselves.

CVSS3: 5.4
1%
Низкий
около 1 года назад
github логотип
GHSA-qfv6-m2pj-vx4r

Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the context of the victim's browser session. By manipulating a DOM element through a crafted URL or user input, the attacker can inject malicious scripts that run when the page is rendered. This type of attack requires user interaction, as the victim would need to access the manipulated URL or input the malicious data themselves.

CVSS3: 5.4
1%
Низкий
около 1 года назад
fstec логотип
BDU:2025-00050

Уязвимость системы управления контентом и медиа-данными Adobe Experience Manager связана с недостаточной защитой структуры веб-страницы, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.4
1%
Низкий
около 1 года назад

Уязвимостей на страницу