CVE-2024-43717: Adobe Experience Manager | Improper Access Control (CWE-284)
Adobe Experience Manager versions 6.5.21 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and have a low impact on confidentiality. Exploitation of this issue does not require user interaction.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43717?
CVE-2024-43717 is classified as a low severity vulnerability.
How do I fix CVE-2024-43717?
To fix CVE-2024-43717, you should upgrade Adobe Experience Manager to version 6.5.22 or later.
What types of software are affected by CVE-2024-43717?
CVE-2024-43717 affects Adobe Experience Manager versions 6.5.21 and earlier, as well as the AEM Cloud Service up to version 2024.11.0.
Who can exploit CVE-2024-43717?
A low-privileged attacker can exploit CVE-2024-43717 to bypass security measures.
What impact does CVE-2024-43717 have?
CVE-2024-43717 can lead to a low impact on confidentiality due to security feature bypass.