Vulnerabilities > Adobe > Experience Manager

DATE CVE VULNERABILITY TITLE RISK
2020-02-13 CVE-2020-3741 Resource Exhaustion vulnerability in Adobe Experience Manager 6.4/6.5
Adobe Experience Manager versions 6.5, and 6.4 have an uncontrolled resource consumption vulnerability.
network
low complexity
adobe CWE-400
7.5
2020-01-15 CVE-2019-16469 Expression Language Injection vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have an expression language injection vulnerability.
network
low complexity
adobe CWE-917
7.5
2020-01-15 CVE-2019-16468 Injection vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have an user interface injection vulnerability.
network
low complexity
adobe CWE-74
7.5
2020-01-15 CVE-2019-16467 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2020-01-15 CVE-2019-16466 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2019-10-25 CVE-2019-8234 Cross-Site Request Forgery (CSRF) vulnerability in Adobe Experience Manager 6.2/6.3/6.4
Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a cross-site request forgery vulnerability.
network
low complexity
adobe CWE-352
6.5
2019-10-25 CVE-2019-8088 Command Injection vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a command injection vulnerability.
network
low complexity
adobe CWE-77
critical
9.8
2019-10-25 CVE-2019-8087 XXE vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a xml external entity injection vulnerability.
network
low complexity
adobe CWE-611
7.5
2019-10-25 CVE-2019-8086 XXE vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a xml external entity injection vulnerability.
network
low complexity
adobe CWE-611
7.5
2019-10-25 CVE-2019-8085 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1