First published: Mon Jun 28 2021(Updated: )
AEM's Cloud Service offering, as well as versions 6.5.7.0 (and below), 6.4.8.3 (and below) and 6.3.3.8 (and below) are affected by an Improper Access Control vulnerability. An unauthenticated attacker could leverage this vulnerability to cause an application denial-of-service in the context of the current user.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Experience Manager | <=6.3.3.8 | |
Adobe Experience Manager | >=6.4.0.0<6.4.8.4 | |
Adobe Experience Manager | >=6.5.0.0<6.5.8.0 | |
Adobe Experience Manager Cloud Service |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2021-21083.
The severity of CVE-2021-21083 is high, with a severity value of 7.5.
Adobe Experience Manager versions 6.5.7.0 (and below), 6.4.8.3 (and below), and 6.3.3.8 (and below) are affected by CVE-2021-21083.
The affected component for CVE-2021-21083 is Adobe Experience Manager Cloud Service.
An unauthenticated attacker can leverage CVE-2021-21083 to cause an application denial-of-service in the context of the affected component.