PT-2025-36777 · Adobe · Experience Manager

Published

2025-09-09

·

Updated

2025-09-12

·

CVE-2025-54248

CVSS v3.1

7.7

High

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Adobe Experience Manager versions 6.5.23.0 and earlier
Description: Adobe Experience Manager versions 6.5.23.0 and earlier are affected by an improper input validation issue that could result in a security feature bypass. A low-privileged attacker could leverage this issue to bypass security measures and gain unauthorized read access.
Recommendations: Update Adobe Experience Manager to a version later than 6.5.23.0.

Fix

RCE

Weakness Enumeration

Related Identifiers

BDU:2025-11106
CVE-2025-54248

Affected Products

Experience Manager