Stored Cross-Site Scripting Vulnerability in Adobe Experience Manager
CVE-2025-46951
5.4MEDIUM
What is CVE-2025-46951?
Adobe Experience Manager versions 6.5.22 and earlier have a vulnerability that allows low privileged attackers to exploit stored Cross-Site Scripting (XSS). This vulnerability enables the injection of malicious scripts into vulnerable form fields. When victims access the page containing these compromised fields, harmful JavaScript could execute in their browsers, potentially leading to unauthorized actions or data exposure.
Affected Version(s)
Adobe Experience Manager 0 <= 6.5.22