Path Traversal Vulnerability in Adobe Experience Manager
CVE-2026-48310

8.6HIGH

What is CVE-2026-48310?

Adobe Experience Manager is vulnerable to a path traversal issue that permits an attacker to access sensitive files and directories outside the intended access scope. This vulnerability does not require any user interaction, resulting in potential unauthorized access to critical information stored within the system. Organizations using this software are advised to review their configurations and apply necessary updates as detailed in the vendor's advisory.

Affected Version(s)

Adobe Experience Manager 6.5 0 <= 6.5.25

Adobe Experience Manager 6.5 0 <= 6.5.25

Adobe Experience Manager 6.5 LTS 0

References

CVSS V3.1

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.