Adobe Experience Manager (AEM) is an enterprise-grade CMS and is quite popular among high-profile companies. There are many bug bounty programs with AEM included in the scope. In the talk, the author will share unique methodology on how to approach AEM weabpps in bug bounty programs. Misconfiguration issues, as well as product vulnerabilities, will be covered in the talk, including newly discovered vulnerabilities. The author will present automation tool called "AEM hacker" for discovering vulnerabilities in AEM webapps.
Have a question for 0ang3el? Post it here!