216.73.216.197

CVE-2024-53970

· Published 19/03/2025 17:15 · Modified 19/03/2025 17:15

Labels: CVE-2024-53970 2025-03-19CVE-2024-53970CWE-79[email protected]

Essential information

Published
19/03/2025 17:15
Modified
19/03/2025 17:15
Author
Creator
CVSS
5.4 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

CVSS metrics

Description

Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
adobe / experience manager cpe:2.3:a:adobe:experience_manager:6.5.21:*:*:*:*:*:*:*

References