# Adobe Experience Manager 配置错误漏洞
## 概述
Adobe Experience Manager 6.5.23 及之前版本存在一个配置错误漏洞,可能导致任意代码执行。
## 影响版本
- Adobe Experience Manager ≤ 6.5.23
## 细节
该漏洞由于系统配置不当,使攻击者可绕过安全机制并执行任意代码。
## 影响
- 无需用户交互即可利用
- 攻击范围(scope)可被修改,可能导致权限提升或横向渗透
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | CVE-2025-54253 | https://github.com/B1ack4sh/Blackash-CVE-2025-54253 | POC详情 |
| 2 | Simulated PoC for CVE-2025-54253: Adobe AEM OGNL Injection Vulnerability | https://github.com/Shivshantp/CVE-2025-54253-Exploit-Demo | POC详情 |
| 3 | None | https://github.com/barbaraeivyu/CVE-2025-54253-e | POC详情 |
| 4 | 🐙 CVE-2025-54253 exploit demo for Adobe AEM Forms on JEE: OGNL injection to RCE with PoC, Python 3.10 exploit code, reproducer and mitigation guidance. | https://github.com/jm7knz/CVE-2025-54253-Exploit-Demo | POC详情 |
| 5 | 🚨 Demonstrate CVE-2025-54253, a critical OGNL injection vulnerability in Adobe AEM Forms, for educational and research purposes. | https://github.com/akujedanjedon/CVE-2025-54253-Exploit-Demo | POC详情 |
| 6 | آسیبپذیری بحرانی با شناسه CVE-2025-54253 در محصول Adobe Experience Manager Forms (JEE) شناسایی شده است | https://github.com/25145hg654511135gfhfkr8488r8r8r8r8r/test | POC详情 |
| 7 | cve-2025-54253 | https://github.com/25145hg654511135gfhfkr8488r8r8r8r8r/test2 | POC详情 |
| 8 | Adobe Experience Manager versions 6.5.23 and earlier are affected by a Misconfiguration vulnerability that could result in arbitrary code execution. An attacker could leverage this vulnerability to bypass security mechanisms and execute code. Exploitation of this issue does not require user interaction and scope is changed. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2025/CVE-2025-54253.yaml | POC详情 |
暂无评论