CVE-2025-47096

Adobe Experience Manager versions 6.5.22 and earlier are affected by an Improper Input Validation vulnerability that could result in a security feature bypass, allowing a low impact to the integrity of the component. Exploitation of this issue requires user interaction in that a victim must interact with the malicious content. Low privileges are required.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adobe:experience_manager:*:*:*:*:-:*:*:*
cpe:2.3:a:adobe:experience_manager:*:*:*:*:aem_cloud_service:*:*:*

History

15 Jul 2025, 18:40

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 8.0
v2 : unknown
v3 : 3.5

14 Jul 2025, 21:15

Type Values Removed Values Added
Summary Adobe Experience Manager versions 6.5.22 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Low privileges are required. Adobe Experience Manager versions 6.5.22 and earlier are affected by an Improper Input Validation vulnerability that could result in a security feature bypass, allowing a low impact to the integrity of the component. Exploitation of this issue requires user interaction in that a victim must interact with the malicious content. Low privileges are required.
CWE CWE-20

16 Jun 2025, 14:47

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 3.5
v2 : unknown
v3 : 8.0
References () https://helpx.adobe.com/security/products/experience-manager/apsb25-48.html - () https://helpx.adobe.com/security/products/experience-manager/apsb25-48.html - Vendor Advisory
CPE cpe:2.3:a:adobe:experience_manager:*:*:*:*:-:*:*:*
cpe:2.3:a:adobe:experience_manager:*:*:*:*:aem_cloud_service:*:*:*
First Time Adobe experience Manager
Adobe

10 Jun 2025, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-10 23:15

Updated : 2025-07-15 18:40


NVD link : CVE-2025-47096

Mitre link : CVE-2025-47096


JSON object : View

Products Affected

adobe

  • experience_manager
CWE

No CWE.