Critical severity9.8NVD Advisory· Published Nov 17, 2023· Updated Jun 17, 2026
CVE-2023-44324
CVE-2023-44324
Description
Adobe FrameMaker Publishing Server versions 2022 and earlier are affected by an Improper Authentication vulnerability that could result in a Security feature bypass. An unauthenticated attacker can abuse this vulnerability to access the API and leak default admin's password. Exploitation of this issue does not require user interaction.
Affected products
4cpe:2.3:a:adobe:framemaker_publishing_server:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:adobe:framemaker_publishing_server:*:*:*:*:*:*:*:*range: <2022
- cpe:2.3:a:adobe:framemaker_publishing_server:2022:-:*:*:*:*:*:*
- (no CPE)range: <=2022
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.