CVE-2025-47096: Adobe Experience Manager | Improper Input Validation (CWE-20)
Adobe Experience Manager versions 6.5.22 and earlier are affected by an Improper Input Validation vulnerability that could result in a security feature bypass, allowing a low impact to the integrity of the component. Exploitation of this issue requires user interaction in that a victim must interact with the malicious content. Low privileges are required.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-47096?
CVE-2025-47096 has a high severity due to its potential for arbitrary code execution.
How do I fix CVE-2025-47096?
To fix CVE-2025-47096, upgrade Adobe Experience Manager to version 6.5.23.0 or later.
What software is affected by CVE-2025-47096?
CVE-2025-47096 affects Adobe Experience Manager versions 6.5.22 and earlier, including AEM Cloud Service before version 2025.5.0.
What type of vulnerability is CVE-2025-47096?
CVE-2025-47096 is an Improper Input Validation vulnerability.
Is user interaction required to exploit CVE-2025-47096?
Yes, exploitation of CVE-2025-47096 requires user interaction where a victim must open a malicious input.