Stored Cross-Site Scripting Vulnerability in Adobe Experience Manager
CVE-2025-46838
5.4MEDIUM
What is CVE-2025-46838?
A security flaw in Adobe Experience Manager versions 6.5.22 and earlier allows low privileged attackers to exploit vulnerable form fields through stored Cross-Site Scripting (XSS). By injecting malicious JavaScript, attackers can compromise the victim's browser when they navigate to the affected page, facilitating unauthorized access to sensitive information or further exploits.
Affected Version(s)
Adobe Experience Manager 0 <= 6.5.22