Vulnerabilities > Adobe > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-03-18 CVE-2024-26050 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an admin attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe
4.8
2024-03-18 CVE-2024-26051 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe
5.4
2024-03-18 CVE-2024-26119 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.19 and earlier are affected by an Information Exposure vulnerability that could result in a security feature bypass.
network
low complexity
adobe
5.3
2024-02-15 CVE-2024-20717 Unspecified vulnerability in Adobe Commerce 2.4.4/2.4.5/2.4.6
Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe
5.4
2024-02-15 CVE-2024-20718 Unspecified vulnerability in Adobe Commerce 2.4.4/2.4.5/2.4.6
Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by a Cross-Site Request Forgery (CSRF) vulnerability that could result in a Security feature bypass.
network
low complexity
adobe
6.5
2024-02-15 CVE-2024-20733 Unspecified vulnerability in Adobe products
Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an Improper Input Validation vulnerability that could lead to an application denial-of-service.
local
low complexity
adobe
5.5
2024-02-15 CVE-2024-20734 Unspecified vulnerability in Adobe products
Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2024-01-10 CVE-2024-20710 Unspecified vulnerability in Adobe Substance 3D Stager 2.0.1/2.1.3
Adobe Substance 3D Stager versions 2.1.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2024-01-10 CVE-2024-20711 Unspecified vulnerability in Adobe Substance 3D Stager 2.0.1/2.1.3
Adobe Substance 3D Stager versions 2.1.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2024-01-10 CVE-2024-20712 Unspecified vulnerability in Adobe Substance 3D Stager 2.0.1/2.1.3
Adobe Substance 3D Stager versions 2.1.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5