ZeroHour

CVE-2021-43762

CVSS 3.1
6.5 medium
EPSS
2%p75
Published
()
Modified
Description

AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a dispatcher bypass vulnerability that could be abused to evade security controls. Sensitive areas of the web application may be exposed through exploitation of the vulnerability.

Vendors
adobe
Products
experience manager, experience manager cloud service
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

In the news