Adobe Experience Manager(AEM)是美国奥多比(Adobe)公司的一套可用于构建网站、移动应用程序和表单的内容管理解决方案。该方案支持移动内容管理、营销销售活动管理和多站点管理等。 Adobe Experience Manager中存在安全漏洞。攻击者可利用该漏洞获取敏感信息。以下版本受到影响:Adobe Experience Manager 6.5版本,6.4版本,6.3版本,6.2版本,6.1版本和6.0版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Adobe | Adobe Experience Manager | 6.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Adobe Experience Manager 6.5, 6.4, 6.3 and 6.2 are susceptible to XML external entity injection. An attacker can possibly obtain sensitive information, modify data, and/or execute unauthorized administrative operations in the context of the affected site. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2019/CVE-2019-8086.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2019-8081 | Adobe Experience Manager 授权问题漏洞 | |
| CVE-2019-8082 | Adobe Experience Manager 代码问题漏洞 | |
| CVE-2019-8083 | Adobe Experience Manager 跨站脚本漏洞 | |
| CVE-2019-8084 | Adobe Experience Manager 跨站脚本漏洞 | |
| CVE-2019-8085 | Adobe Experience Manager 跨站脚本漏洞 | |
| CVE-2019-8087 | Adobe Experience Manager 代码问题漏洞 | |
| CVE-2019-8088 | Adobe Experience Manager 注入漏洞 | |
| CVE-2019-8234 | Adobe Experience Manager 跨站请求伪造漏洞 |
<svg onload=alert('1')>
<img src =a onerror=alert('1')>