Medium severity5.8NVD Advisory· Published Dec 10, 2020· Updated Jun 17, 2026
CVE-2020-24444
CVE-2020-24444
Description
AEM Forms SP6 add-on for AEM 6.5.6.0 and Forms add-on package for AEM 6.4 Service Pack 8 Cumulative Fix Pack 2 (6.4.8.2) have a blind Server-Side Request Forgery (SSRF) vulnerability. This vulnerability could be exploited by an unauthenticated attacker to gather information about internal systems that reside on the same network.
Affected products
4cpe:2.3:a:adobe:experience_manager_forms_add-on:6.4.8.2:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:adobe:experience_manager_forms_add-on:6.4.8.2:*:*:*:*:*:*:*
- cpe:2.3:a:adobe:experience_manager_forms_add-on:6.5.6.0:*:*:*:*:*:*:*
- Range: 6.5.6.0, 6.4.8.2
- Range: <= Forms SP6 add-on for AEM 6.5.6.0
Patches
Vulnerability mechanics
References
1- helpx.adobe.com/security/products/experience-manager/apsb20-72.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.