CVE-2025-54249

⚪ Do wiadomości

Podatność SSRF w Adobe Experience Manager umożliwia nieautoryzowany dostęp do danych.

CVSS
6.5
EPSS
2.0%
Exploit
none
Vendor
adobe
Opis źródłowy (NVD)

Adobe Experience Manager versions 6.5.23.0 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to manipulate server-side requests and bypass security controls allowing unauthorized read access.

ssrf Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS6.5
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)2.0%
Opublikowano (NVD)2025-09-09 17:15:58 UTC
Ostatnia modyfikacja (NVD)2026-09-30 23:10:00 UTC
Referencje