CVE-2025-49533

Adobe Experience Manager (MS) versions 6.5.23.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could lead to arbitrary code execution by an attacker. Exploitation of this issue does not require user interaction. Scope is unchanged.
Configurations

Configuration 1 (hide)

cpe:2.3:a:adobe:experience_manager:*:*:*:*:-:*:*:*

History

18 Jul 2025, 14:49

Type Values Removed Values Added
CPE cpe:2.3:a:adobe:experience_manager:*:*:*:*:-:*:*:*
First Time Adobe
Adobe experience Manager
References () https://helpx.adobe.com/security/products/aem-forms/apsb25-67.html - () https://helpx.adobe.com/security/products/aem-forms/apsb25-67.html - Vendor Advisory

10 Jul 2025, 13:18

Type Values Removed Values Added
Summary
  • (es) Las versiones 6.5.23.0 y anteriores de Adobe Experience Manager (MS) se ven afectadas por una vulnerabilidad de deserialización de datos no confiables que podría provocar la ejecución de código arbitrario por parte de un atacante. La explotación de este problema no requiere la interacción del usuario. El alcance no se modifica.

08 Jul 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-08 22:15

Updated : 2025-07-18 14:49


NVD link : CVE-2025-49533

Mitre link : CVE-2025-49533

CVE.ORG link : CVE-2025-49533


JSON object : View

Products Affected

adobe

  • experience_manager
CWE
CWE-502

Deserialization of Untrusted Data