Severity
High
Analysis Summary
CVE-2024-26029 CVSS:7.5
Adobe Experience Manager could allow a remote attacker to bypass security restrictions, caused by improper access control. By persuading a victim to open a specially crafted document, a remote attacker could exploit this vulnerability to bypass access restrictions.
CVE-2024-36226 CVSS:7.5
Adobe Experience Manager could allow a remote attacker to bypass security restrictions, caused by improper input validation. By persuading a victim to open a specially crafted document, a remote attacker could exploit this vulnerability to bypass access restrictions.
Impact
- Security Bypass
Indicators of Compromise
CVE
- CVE-2024-26029
- CVE-2024-36226
Affected Vendors
Adobe
Affected Products
- Adobe Experience Manager 6.5.20
Remediation
Refer to Adobe Security Advisory for patch, upgrade or suggested workaround information.

