Vulnerabilities > Adobe > Experience Manager > 6.1.2.10
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-09-10 | CVE-2020-9733 | Improper Privilege Management vulnerability in Adobe Experience Manager An AEM java servlet in AEM versions 6.5.5.0 (and below) and 6.4.8.1 (and below) executes with the permissions of a high privileged service user. | 7.5 |
2020-09-10 | CVE-2020-9732 | Cross-site Scripting vulnerability in Adobe Experience Manager The AEM Forms add-on for versions 6.5.5.0 (and below) and 6.4.8.2 (and below) are affected by a stored XSS vulnerability that allows users with 'Author' privileges to store malicious scripts in fields associated with the Sites component. | 9.0 |
2020-03-25 | CVE-2020-3769 | Server-Side Request Forgery (SSRF) vulnerability in Adobe Experience Manager Adobe Experience Manager versions 6.5 and earlier have a server-side request forgery (ssrf) vulnerability. | 7.5 |
2019-07-18 | CVE-2019-7953 | Cross-Site Request Forgery (CSRF) vulnerability in Adobe Experience Manager Adobe Experience Manager version 6.4 and ealier have a Cross-Site Request Forgery vulnerability. | 6.5 |
2018-08-29 | CVE-2018-12807 | Improper Input Validation vulnerability in Adobe Experience Manager Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have an input validation bypass vulnerability. | 5.3 |
2018-08-29 | CVE-2018-12806 | Cross-site Scripting vulnerability in Adobe Experience Manager Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. | 6.1 |
2018-07-20 | CVE-2018-5006 | Server-Side Request Forgery (SSRF) vulnerability in Adobe Experience Manager Adobe Experience Manager versions 6.4 and earlier have a Server-Side Request Forgery vulnerability. | 7.5 |
2018-07-20 | CVE-2018-12809 | Server-Side Request Forgery (SSRF) vulnerability in Adobe Experience Manager Adobe Experience Manager versions 6.4 and earlier have a Server-Side Request Forgery vulnerability. | 7.5 |
2018-05-19 | CVE-2018-4930 | Cross-site Scripting vulnerability in Adobe Experience Manager Adobe Experience Manager versions 6.3 and earlier have an exploitable Cross-site scripting vulnerability. | 6.1 |
2018-05-19 | CVE-2018-4929 | Cross-site Scripting vulnerability in Adobe Experience Manager Adobe Experience Manager versions 6.2 and earlier have an exploitable stored cross-site scripting vulnerability. | 6.1 |