References https://nvd.nist.gov/vuln/detail/CVE-2025-54253 https://helpx.adobe.com/security/products/aem-forms/apsb25-82.html https://slcyber.io/assetnote-security-research-center/struts-devmode-in-2025-critical-pre-auth-vulnerabilities-in-adobe-experience-manager-forms/ https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-54253 https://zeropath.com/blog/cve-2025-54253-adobe-experience-manager-forms-misconfiguration-summary https://firecompass.com/cve-2025-54253-pre-auth-rce-adobe-aem-forms-on-jee-critical-ognl-injection/ https://www.sentinelone.com/vulnerability-database/cve-2025-54253/ https://www.tenable.com/cve/CVE-2025-54253 https://www.cve.org/CVERecord?id=CVE-2025-54253 https://experienceleague.adobe.com/en/docs/experience-manager-65/content/forms/troubleshooting/mitigating-xxe-and-configuration-vulnerabilities-for-experience-manager-forms-jee
Related Vulnerabilities旭辰資訊|SmartIT Desktop Manager - 存在4個漏洞中成科信票务管理系统 /SystemManager/TicketSystem/ReturnTicketPlance.ashx SQL 注入漏洞中成科信票务管理系统 /SystemManager/Planetarium/ReserveTicketManagerPlane.ashx SQL 注入漏洞PoCCVE-2020-10204: Sonatype Nexus Repository Manager 3 - Remote Code ExecutionPoCCVE-2026-71362: Adobe Commerce/Magento - Customer Session Identity SwitchPoCccm-detect: Clear-Com Core Configuration Manager Panel - DetectPoCibm-websphere-ssrf: IBM WebSphere HCL Digital Experience - Server-Side Request Forgery智慧物联网综合服务平台ListFileManager存在目录枚举漏洞PoCCVE-2026-48282: Adobe ColdFusion - RDS Arbitrary File WriteWP User Manager /profile/admin/about 文件包含漏洞(CVE-2026-9290)SteVe /steve/manager/signin 默认口令漏洞PoCCVE-2008-2052: Bitrix Site Manager 6.5 - Open RedirectPoCCVE-2026-9290: WP User Manager – User Profile Builder & Membership - Local File Inclusion