Vulnerabilities > Adobe

DATE CVE VULNERABILITY TITLE RISK
2024-06-13 CVE-2024-26029 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass.
network
low complexity
adobe
critical
9.8
2024-06-13 CVE-2024-26053 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier Answer: are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability.
network
low complexity
adobe
5.4
2024-06-13 CVE-2024-26071 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe
5.4
2024-06-13 CVE-2024-26086 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability.
network
low complexity
adobe
5.4
2024-06-13 CVE-2024-26113 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability.
network
low complexity
adobe
5.4
2024-06-13 CVE-2024-26116 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability.
network
low complexity
adobe
5.4
2024-05-16 CVE-2024-30314 OS Command Injection vulnerability in Adobe Dreamweaver
Dreamweaver Desktop versions 21.3 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could lead in arbitrary code execution by an attacker.
local
low complexity
adobe CWE-78
7.8
2024-05-16 CVE-2024-20791 Out-of-bounds Read vulnerability in Adobe Illustrator
Illustrator versions 28.4, 27.9.3 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure.
local
low complexity
adobe CWE-125
7.8
2024-05-16 CVE-2024-20792 Use After Free vulnerability in Adobe Illustrator
Illustrator versions 28.4, 27.9.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8
2024-05-16 CVE-2024-20793 Out-of-bounds Read vulnerability in Adobe Illustrator
Illustrator versions 28.4, 27.9.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5