Adobe Experience Manager version 6.5.9.0 (and earlier) is affected by a improper certificate validation vulnerability in the cold storage component. If an attacker can achieve a man in the middle when the cold server establishes a new certificate, they would be able to harvest sensitive information.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-27879 Adobe Experience Manager version 6.5.9.0 (and earlier) is affected by a improper certificate validation vulnerability in the cold storage component. If an attacker can achieve a man in the middle when the cold server establishes a new certificate, they would be able to harvest sensitive information.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 23 Apr 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published:

Updated: 2025-04-23T19:27:22.676Z

Reserved: 2021-09-08T00:00:00.000Z

Link: CVE-2021-40713

cve-icon Vulnrichment

Updated: 2024-08-04T02:51:06.645Z

cve-icon NVD

Status : Modified

Published: 2021-09-27T16:15:10.727

Modified: 2024-11-21T06:24:37.080

Link: CVE-2021-40713

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.