CVE-2026-48252

EUVD-2026-44379
Adobe Experience Manager is affected by a Missing Authentication for Critical Function vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploitation of this issue does not require user interaction. Scope is changed.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.6 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 56.75%
Affected Products (NVD)
VendorProductVersion
adobeexperience_manager
𝑥
≤ 6.5.25.0
adobeexperience_manager
𝑥
≤ 2020.5.0
adobeexperience_manager
6.5
adobeexperience_manager
6.5:sp1
adobeexperience_manager
6.5:sp2
𝑥
= Vulnerable software versions