PT-2023-7656 · Adobe · Experience Manager

Published

2023-12-12

·

Updated

2023-12-16

·

CVE-2023-48608

CVSS v3.1

3.5

Low

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Adobe Experience Manager versions 6.5.18 and earlier
Description The issue is related to an Improper Input Validation vulnerability, which could allow a low-privileged attacker to achieve a low-integrity impact within the application. Exploitation of this issue requires user interaction. It is also associated with a failure to protect the web page structure, potentially allowing a remote attacker to execute arbitrary code.
Recommendations For Adobe Experience Manager versions 6.5.18 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-08717
CVE-2023-48608

Affected Products

Experience Manager