CVE-2024-34128
23.07.2024, 12:15
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victims browser when they browse to the page containing the vulnerable field.
| Vendor | Product | Version |
|---|---|---|
| adobe | experience_manager | 𝑥 < 6.5.21.0 |
| adobe | experience_manager | 𝑥 ≤ 2024.5.0 |
𝑥
= Vulnerable software versions