PT-2025-50947 · Adobe · Experience Manager+3

CVE-2025-64542

·

Publicado

2025-12-09

·

Atualizado

2026-09-08

CVSS v3.1

5.4

Média

VetorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM environment to execute malicious JavaScript within the context of the victim's browser. Exploitation of this issue requires user interaction in that a victim must visit a crafted webpage. Scope is changed.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2025-15566
CVE-2025-64542

Produtos afetados

Experience Manager
Experience Manager 6.5
Experience Manager 6.5 Lts
Experience Manager Cloud Service