CVE-2020-24445
- EPSS 0.44%
- Veröffentlicht 10.12.2020 06:15:13
- Zuletzt bearbeitet 21.11.2024 05:14:50
AEM's Cloud Service offering, as well as version 6.5.6.0 (and below), are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript ...
CVE-2020-9738
- EPSS 2.09%
- Veröffentlicht 10.09.2020 17:15:41
- Zuletzt bearbeitet 21.11.2024 05:41:11
AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by a stored XSS vulnerability that allows users with access to the Content Repository Development Environment to store malicious scr...
CVE-2020-9740
- EPSS 0.49%
- Veröffentlicht 10.09.2020 17:15:41
- Zuletzt bearbeitet 21.11.2024 05:41:11
AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by a stored XSS vulnerability that allows users with 'Author' privileges to store malicious scripts in fields associated with the De...
CVE-2020-9741
- EPSS 0.49%
- Veröffentlicht 10.09.2020 17:15:41
- Zuletzt bearbeitet 21.11.2024 05:41:11
The AEM forms add-on for versions 6.5.5.0 (and below) and 6.4.8.2 (and below) is affected by a stored XSS vulnerability that allows users with 'Author' privileges to store malicious scripts in fields associated with the Forms component. These scripts...
CVE-2020-9742
- EPSS 0.87%
- Veröffentlicht 10.09.2020 17:15:41
- Zuletzt bearbeitet 21.11.2024 05:41:11
AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below) and 6.3.3.8 (and below) are affected by a stored XSS vulnerability that allows users with 'Author' privileges to store malicious scripts in fields associated with the Inbox calendar feature. These...
CVE-2020-9743
- EPSS 3.32%
- Veröffentlicht 10.09.2020 17:15:41
- Zuletzt bearbeitet 21.11.2024 05:41:12
AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by an HTML injection vulnerability in the content editor component that allows unauthenticated users to craft an HTTP request that i...
CVE-2020-9735
- EPSS 2.09%
- Veröffentlicht 10.09.2020 17:15:40
- Zuletzt bearbeitet 21.11.2024 05:41:11
AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by a stored XSS vulnerability that allows users with access to the Content Repository Development Environment to store malicious scr...
CVE-2020-9736
- EPSS 2.09%
- Veröffentlicht 10.09.2020 17:15:40
- Zuletzt bearbeitet 21.11.2024 05:41:11
AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by a stored XSS vulnerability that allows users with access to the Content Repository Development Environment to store malicious scr...
CVE-2020-9737
- EPSS 2.09%
- Veröffentlicht 10.09.2020 17:15:40
- Zuletzt bearbeitet 21.11.2024 05:41:11
AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by a stored XSS vulnerability that allows users with access to the Content Repository Development Environment to store malicious scr...
CVE-2020-9734
- EPSS 0.49%
- Veröffentlicht 10.09.2020 17:15:39
- Zuletzt bearbeitet 21.11.2024 05:41:10
The AEM Forms add-on for versions 6.5.5.0 (and below) and 6.4.8.1 (and below) is affected by a stored XSS vulnerability that allows users with 'Author' privileges to store malicious scripts in fields associated with the Forms component. These scripts...