Vulnerabilities > Adobe > Experience Manager > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-06-13 CVE-2024-26029 Improper Access Control vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass.
network
low complexity
adobe CWE-284
critical
9.8
2020-12-10 CVE-2020-24445 Cross-site Scripting vulnerability in Adobe products
AEM's Cloud Service offering, as well as version 6.5.6.0 (and below), are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe CWE-79
critical
9.0
2019-08-16 CVE-2019-7964 Unspecified vulnerability in Adobe Experience Manager 6.4/6.5
Adobe Experience Manager versions 6.5, and 6.4 have an authentication bypass vulnerability.
network
low complexity
adobe
critical
10.0