First published: Mon Mar 18 2024(Updated: )
Adobe Experience Manager versions 6.5.19 and earlier are affected by an Information Exposure vulnerability that could result in a security feature bypass. An attacker could leverage this vulnerability to achieve a low-confidentiality impact within the application. Exploitation of this issue does not require user interaction.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Experience Manager | <6.5.20.0 | |
Adobe Experience Manager | <2024.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-26119 has a low impact on confidentiality and allows for an information exposure vulnerability.
To fix CVE-2024-26119, update Adobe Experience Manager to version 6.5.20.0 or later.
CVE-2024-26119 affects Adobe Experience Manager versions 6.5.19 and earlier, and AEM Cloud Service versions up to 2024.3.0.
Exploitation of CVE-2024-26119 could lead to a security feature bypass resulting in low confidentiality impact.
CVE-2024-26119 is related to an information exposure vulnerability in Adobe Experience Manager that may allow unauthorized access to sensitive data.