CVE-2020-9644: XSS
Published Jun 12, 2020
·Updated
Adobe Experience Manager versions 6.5 and earlier have a cross-site scripting (stored) vulnerability. Successful exploitation could lead to arbitrary javascript execution in the browser.
Affected Software
2 affected components
Adobe Experience Manager>=6.4<6.4.8.1
Adobe Experience Manager>=6.5<6.5.5.0
Remediation
Event History
Jun 12, 2020
CVE Published
via MITRE·01:13 PM
Data Sourced
via MITRE·01:13 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-9644?
CVE-2020-9644 has a high severity rating due to the potential for arbitrary JavaScript execution in the browser.
2
How do I fix CVE-2020-9644?
To fix CVE-2020-9644, upgrade Adobe Experience Manager to version 6.5.6.0 or later.
3
Which versions of Adobe Experience Manager are affected by CVE-2020-9644?
Adobe Experience Manager versions 6.5 and earlier, specifically up to 6.5.5.0, are affected by CVE-2020-9644.
4
What type of vulnerability is CVE-2020-9644?
CVE-2020-9644 is classified as a stored cross-site scripting (XSS) vulnerability.
5
What could be the impact of exploiting CVE-2020-9644?
Exploitation of CVE-2020-9644 could allow attackers to execute malicious JavaScript in the context of users' browsers.