CVE-2023-22271

Publication date

2023-03-22 00:00:00

Family

adobe

State

PUBLISHED

Description

Experience Manager versions 6.5.15.0 (and earlier) are affected by a Weak Cryptography for Passwords vulnerability that can lead to a security feature bypass. A low-privileged attacker can exploit this in order to decrypt a users password. The attack complexity is high since a successful exploitation requires to already have in possession this encrypted secret.