Adobe Experience Manager(AEM)是美国奥多比(Adobe)公司的一套可用于构建网站、移动应用程序和表单的内容管理解决方案。该方案支持移动内容管理、营销销售活动管理和多站点管理等。 Adobe Experience Manager中存在安全漏洞。攻击者可利用该漏洞获取敏感信息。以下版本受到影响:Adobe Experience Manager 6.5版本,6.4版本,6.3版本,6.2版本,6.1版本和6.0版本。
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| Adobe | Adobe Experience Manager | 6.5 | - |
|
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | Adobe Experience Manager 6.5, 6.4, 6.3 and 6.2 are susceptible to XML external entity injection. An attacker can possibly obtain sensitive information, modify data, and/or execute unauthorized administrative operations in the context of the affected site. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2019/CVE-2019-8086.yaml | POC详情 |
未找到公开 POC。
登录以生成 AI POC| CVE-2019-8081 | Adobe Experience Manager 授权问题漏洞 | |
| CVE-2019-8082 | Adobe Experience Manager 代码问题漏洞 | |
| CVE-2019-8083 | Adobe Experience Manager 跨站脚本漏洞 | |
| CVE-2019-8084 | Adobe Experience Manager 跨站脚本漏洞 | |
| CVE-2019-8085 | Adobe Experience Manager 跨站脚本漏洞 | |
| CVE-2019-8087 | Adobe Experience Manager 代码问题漏洞 | |
| CVE-2019-8088 | Adobe Experience Manager 注入漏洞 | |
| CVE-2019-8234 | Adobe Experience Manager 跨站请求伪造漏洞 |
<svg onload=alert('1')>
<img src =a onerror=alert('1')>