📦 Experience Manager Cloud Service

by Adobe

🔍 What is Experience Manager Cloud Service?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-24445

CRITICAL CVSS 9.0 Dec 10, 2020

This stored Cross-Site Scripting (XSS) vulnerability in Adobe Experience Manager allows attackers to inject malicious JavaScript into vulnerable form fields. When victims browse pages containing these...

CVE-2021-43764

HIGH CVSS 8.0 Jan 13, 2022

This stored Cross-Site Scripting (XSS) vulnerability in Adobe Experience Manager allows attackers to inject malicious JavaScript into vulnerable form fields. When users visit pages containing these co...

CVE-2021-44176

HIGH CVSS 8.1 Jan 13, 2022

This stored XSS vulnerability in Adobe Experience Manager allows attackers to inject malicious JavaScript into vulnerable form fields. When users visit pages containing these compromised fields, their...

CVE-2021-43761

HIGH CVSS 8.0 Jan 13, 2022

This stored Cross-Site Scripting (XSS) vulnerability in Adobe Experience Manager (AEM) allows attackers to inject malicious scripts into form fields, which execute in victims' browsers when they visit...

CVE-2021-21083

HIGH CVSS 7.5 Jun 28, 2021

This vulnerability allows unauthenticated attackers to trigger a denial-of-service condition in Adobe Experience Manager (AEM) by exploiting improper access controls. Affected systems include AEM Clou...

CVE-2023-22260

MEDIUM CVSS 5.4 Mar 22, 2023

This vulnerability allows a low-privilege authenticated attacker to redirect users to malicious websites via an open redirect flaw in Adobe Experience Manager. It affects versions 6.5.15.0 and earlier...

CVE-2023-22262

MEDIUM CVSS 5.4 Mar 22, 2023

This vulnerability allows low-privilege authenticated attackers in Adobe Experience Manager 6.5.15.0 and earlier to redirect users to malicious websites through URL manipulation. Exploitation requires...

CVE-2023-22264

MEDIUM CVSS 5.4 Mar 22, 2023

This vulnerability allows low-privilege authenticated attackers to create malicious links that redirect users to untrusted websites when clicked. It affects Adobe Experience Manager versions 6.5.15.0 ...

CVE-2023-22266

MEDIUM CVSS 5.4 Mar 22, 2023

This vulnerability allows low-privilege authenticated attackers to create malicious links that redirect Adobe Experience Manager users to untrusted websites. It affects AEM versions 6.5.15.0 and earli...

CVE-2023-22271

MEDIUM CVSS 5.3 Mar 22, 2023

Adobe Experience Manager versions 6.5.15.0 and earlier use weak cryptography for password storage, allowing low-privileged attackers who already possess encrypted passwords to decrypt them. This vulne...

CVE-2023-21616

MEDIUM CVSS 5.4 Mar 22, 2023

This reflected Cross-Site Scripting (XSS) vulnerability in Adobe Experience Manager allows attackers to inject malicious JavaScript into vulnerable pages. When a victim visits a specially crafted URL,...

CVE-2023-22253

MEDIUM CVSS 5.4 Mar 22, 2023

This vulnerability allows low-privileged attackers to execute malicious JavaScript in victims' browsers by tricking them into visiting specially crafted URLs. It affects Adobe Experience Manager versi...

CVE-2023-22256

MEDIUM CVSS 5.4 Mar 22, 2023

This vulnerability allows low-privilege authenticated attackers to create malicious links that redirect users to untrusted websites when clicked. It affects Adobe Experience Manager versions 6.5.15.0 ...

CVE-2023-22258

MEDIUM CVSS 5.4 Mar 22, 2023

This vulnerability allows low-privilege authenticated attackers to create malicious links that redirect Adobe Experience Manager users to untrusted websites. It affects Adobe Experience Manager versio...