Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-23374 | Adobe Experience Manager versions 6.5.19 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable web pages. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable script. |
Tue, 03 Dec 2024 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:adobe:experience_manager:*:*:*:*:-:*:*:* cpe:2.3:a:adobe:experience_manager:*:*:*:*:aem_cloud_service:*:*:* |
Mon, 07 Oct 2024 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | DOM XSS in `libs/screens/dcc/components/fileuploaddrop/clientlibs/js/dropzone.js` | Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) |
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2024-10-07T13:26:09.797Z
Reserved: 2024-02-14T17:37:23.394Z
Link: CVE-2024-26080
Updated: 2024-08-01T23:59:32.235Z
Status : Analyzed
Published: 2024-03-18T18:15:16.417
Modified: 2024-12-03T16:26:46.317
Link: CVE-2024-26080
No data.
OpenCVE Enrichment
No data.
EUVD