CVE-2024-53967
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Summary
CVE-2024-53967 is a DOM-based Cross-Site Scripting (XSS) vulnerability affecting Adobe Experience Manager versions 6.5.21 and earlier. This issue allows a low privileged attacker to inject malicious scripts into a victim's browser session by manipulating the DOM environment. Exploitation requires user interaction, such as following a malicious link. Successful exploitation could result in the execution of arbitrary code in the victim's browser, potentially leading to data theft or unauthorized system access. Users are advised to update their Adobe Experience Manager installations to a patched version as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.