CVE-2022-42351

Adobe Experience Manager version 6.5.14 (and earlier) is affected by an Incorrect Authorization vulnerability that could result in a security feature bypass. A low-privileged attacker could leverage this vulnerability to disclose low level confidentiality information. Exploitation of this issue does not require user interaction.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adobe:experience_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:experience_manager_cloud_service:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:24

Type Values Removed Values Added
Summary
  • (es) Adobe Experience Manager versión 6.5.14 (y anteriores) se ve afectado por una vulnerabilidad de autorización incorrecta que podría provocar la omisión de una característica de seguridad. Un atacante con pocos privilegios podría aprovechar esta vulnerabilidad para revelar información confidencial de bajo nivel. La explotación de este problema no requiere la interacción del usuario.
References () https://helpx.adobe.com/security/products/experience-manager/apsb22-59.html - Vendor Advisory () https://helpx.adobe.com/security/products/experience-manager/apsb22-59.html - Vendor Advisory

Information

Published : 2022-12-16 16:15

Updated : 2024-11-21 07:24


NVD link : CVE-2022-42351

Mitre link : CVE-2022-42351

CVE.ORG link : CVE-2022-42351


JSON object : View

Products Affected

adobe

  • experience_manager
  • experience_manager_cloud_service
CWE
CWE-863

Incorrect Authorization