Vulnerabilities > Adobe > Experience Manager > 6.2.0

DATE CVE VULNERABILITY TITLE RISK
2018-07-20 CVE-2018-5004 Server-Side Request Forgery (SSRF) vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.2 and 6.3 have a Server-Side Request Forgery vulnerability.
network
low complexity
adobe CWE-918
7.5
2018-07-20 CVE-2018-12809 Server-Side Request Forgery (SSRF) vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.4 and earlier have a Server-Side Request Forgery vulnerability.
network
low complexity
adobe CWE-918
7.5
2018-05-19 CVE-2018-4930 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.3 and earlier have an exploitable Cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-05-19 CVE-2018-4929 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.2 and earlier have an exploitable stored cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-02-27 CVE-2018-4876 Cross-site Scripting vulnerability in Adobe Experience Manager 6.1.0/6.2.0/6.3.0
Adobe Experience Manager versions 6.3, 6.2, and 6.1 are vulnerable to cross-site scripting via a bypass of the Sling XSSAPI#getValidHref function.
network
low complexity
adobe CWE-79
6.1
2017-12-09 CVE-2017-3111 Information Exposure vulnerability in Adobe Experience Manager 6.1.0/6.2.0
An issue was discovered in Adobe Experience Manager 6.3, 6.2, 6.1, 6.0.
network
low complexity
adobe CWE-200
7.5
2017-12-09 CVE-2017-3109 Cross-site Scripting vulnerability in Adobe Experience Manager
An issue was discovered in Adobe Experience Manager 6.3, 6.2, 6.1, 6.0.
network
low complexity
adobe CWE-79
6.1
2017-12-09 CVE-2017-11296 Cross-site Scripting vulnerability in Adobe Experience Manager
An issue was discovered in Adobe Experience Manager 6.3, 6.2, 6.1, 6.0.
network
low complexity
adobe CWE-79
6.1
2017-08-11 CVE-2017-3107 Information Exposure vulnerability in Adobe Experience Manager
Adobe Experience Manager 6.3 and earlier has a misconfiguration vulnerability.
network
low complexity
adobe CWE-200
7.5
2016-12-15 CVE-2016-7885 Cross-Site Request Forgery (CSRF) vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.2 and earlier have a vulnerability that could be used in Cross-Site Request Forgery attacks.
network
low complexity
adobe CWE-352
8.8