Critical severity9.8NVD Advisory· Published Nov 17, 2023· Updated Jun 17, 2026
CVE-2023-44324
CVE-2023-44324
Description
Adobe FrameMaker Publishing Server versions 2022 and earlier are affected by an Improper Authentication vulnerability that could result in a Security feature bypass. An unauthenticated attacker can abuse this vulnerability to access the API and leak default admin's password. Exploitation of this issue does not require user interaction.
Affected products
4<=2022+ 3 more
- (no CPE)range: <=2022
- cpe:2.3:a:adobe:framemaker_publishing_server:*:*:*:*:*:*:*:*range: <2022
- cpe:2.3:a:adobe:framemaker_publishing_server:2022:-:*:*:*:*:*:*
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.