Vulnerabilities > Adobe > Experience Manager > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-10-17 CVE-2018-15971 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-10-17 CVE-2018-15970 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-10-17 CVE-2018-15969 Cross-site Scripting vulnerability in Adobe Experience Manager 6.3.0/6.4.0
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-09-06 CVE-2018-5005 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a Cross-site Scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-08-29 CVE-2018-12807 Improper Input Validation vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have an input validation bypass vulnerability.
network
low complexity
adobe CWE-20
5.3
2018-08-29 CVE-2018-12806 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-05-19 CVE-2018-4931 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.1 and earlier have an exploitable stored cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-05-19 CVE-2018-4930 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.3 and earlier have an exploitable Cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-05-19 CVE-2018-4929 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.2 and earlier have an exploitable stored cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-02-27 CVE-2018-4876 Cross-site Scripting vulnerability in Adobe Experience Manager 6.1.0/6.2.0/6.3.0
Adobe Experience Manager versions 6.3, 6.2, and 6.1 are vulnerable to cross-site scripting via a bypass of the Sling XSSAPI#getValidHref function.
network
low complexity
adobe CWE-79
6.1