Page 89 of 464 results (0.007 seconds)

CVSS: 9.0EPSS: 0%CPEs: 24EXPL: 0

AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by a stored XSS vulnerability that allows users with 'Author' privileges to store malicious scripts in fields associated with the Design Importer. These scripts may be executed in a victim’s browser when they open the page containing the vulnerable field. Las versiones de AEM 6.5.5.0 (y anteriores), 6.4.8.1 (y anteriores), 6.3.3.8 (y anteriores) y 6.2 SP1-CFP20 (y posteriores) están afectadas por una vulnerabilidad de tipo XSS almacenado que permite a usuarios con privilegios de "Author" almacenar scripts maliciosos en campos asociados con Design Importer. Estos scripts pueden ser ejecutados en el navegador de la víctima cuando abre la página que contiene el campo vulnerable • https://helpx.adobe.com/security/products/experience-manager/apsb20-56.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 6.1EPSS: 0%CPEs: 2EXPL: 0

Adobe Experience Manager versions 6.5 and earlier have a cross-site scripting (reflected) vulnerability. Successful exploitation could lead to arbitrary javascript execution in the browser. Adobe Experience Manager versiones 6.5 y anteriores, presentan una vulnerabilidad de tipo cross-site scripting (reflejado). Una explotación con éxito podría conllevar a una ejecución de javascript arbitraria en el navegador • https://helpx.adobe.com/security/products/experience-manager/apsb20-31.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 6.1EPSS: 0%CPEs: 2EXPL: 0

Adobe Experience Manager versions 6.5 and earlier have a cross-site scripting (dom-based) vulnerability. Successful exploitation could lead to arbitrary javascript execution in the browser. Adobe Experience Manager versiones 6.5 y anteriores, presentan una vulnerabilidad de tipo cross-site scripting (basada en dom). Una explotación con éxito podría conllevar a una ejecución de javascript arbitraria en el navegador • https://helpx.adobe.com/security/products/experience-manager/apsb20-31.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.4EPSS: 0%CPEs: 2EXPL: 0

Adobe Experience Manager versions 6.5 and earlier have a cross-site scripting (stored) vulnerability. Successful exploitation could lead to arbitrary javascript execution in the browser. Adobe Experience Manager versiones 6.5 y anteriores, presentan una vulnerabilidad de tipo cross-site scripting (almacenado). Una explotación con éxito podría conllevar a una ejecución de javascript arbitraria en el navegador • https://helpx.adobe.com/security/products/experience-manager/apsb20-31.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 6.1EPSS: 0%CPEs: 2EXPL: 0

Adobe Experience Manager versions 6.5 and earlier have a cross-site scripting vulnerability. Successful exploitation could lead to arbitrary javascript execution in the browser. Adobe Experience Manager versiones 6.5 y anteriores, presentan una vulnerabilidad de tipo cross-site scripting. Una explotación con éxito podría conllevar a una ejecución de javascript arbitraria en el navegador • https://helpx.adobe.com/security/products/experience-manager/apsb20-31.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •