PT-2023-30856 · Adobe · Experience Manager

Published

2023-12-15

·

Updated

2023-12-18

·

CVE-2023-48476

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Adobe Experience Manager versions 6.5.18 and earlier
Description A Cross-site Scripting (DOM-based XSS) issue allows malicious JavaScript content to be executed within the context of a victim's browser if a low-privileged attacker convinces the victim to visit a URL referencing a vulnerable page.
Recommendations For Adobe Experience Manager versions 6.5.18 and earlier, update to a version later than 6.5.18 to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-48476

Affected Products

Experience Manager