Логотип exploitDog
bind:CVE-2025-54252
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-54252

Количество 3

Количество 3

nvd логотип

CVE-2025-54252

5 месяцев назад

Adobe Experience Manager versions 6.5.23.0 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. This could result in bypassing security features within the application. Exploitation of this issue requires user interaction in that a victim must browse to the page containing the vulnerable field.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-r9x3-pfq4-mcfq

5 месяцев назад

Adobe Experience Manager versions 6.5.23.0 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. This could result in bypassing security features within the application. Exploitation of this issue requires user interaction in that a victim must browse to the page containing the vulnerable field.

CVSS3: 5.4
EPSS: Низкий
fstec логотип

BDU:2025-11065

5 месяцев назад

Уязвимость системы управления контентом и медиа-данными Adobe Experience Manager (AEM), связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю проводить межсайтовые сценарные атаки (XSS)

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-54252

Adobe Experience Manager versions 6.5.23.0 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. This could result in bypassing security features within the application. Exploitation of this issue requires user interaction in that a victim must browse to the page containing the vulnerable field.

CVSS3: 5.4
0%
Низкий
5 месяцев назад
github логотип
GHSA-r9x3-pfq4-mcfq

Adobe Experience Manager versions 6.5.23.0 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. This could result in bypassing security features within the application. Exploitation of this issue requires user interaction in that a victim must browse to the page containing the vulnerable field.

CVSS3: 5.4
0%
Низкий
5 месяцев назад
fstec логотип
BDU:2025-11065

Уязвимость системы управления контентом и медиа-данными Adobe Experience Manager (AEM), связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю проводить межсайтовые сценарные атаки (XSS)

CVSS3: 5.4
0%
Низкий
5 месяцев назад

Уязвимостей на страницу