Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7wh2-f5fv-2c6f

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Enterprise Portal 4.3.1 allows remote attackers to inject arbitrary web script or HTML via the emailAddress parameter in a Send New Password action, a different vector than CVE-2007-6055. NOTE: some of these details are obtained from third party information.

Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Enterprise Portal 4.3.1 allows remote attackers to inject arbitrary web script or HTML via the emailAddress parameter in a Send New Password action, a different vector than CVE-2007-6055. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 91%
0.07499
Низкий

Дефекты

CWE-79

Связанные уязвимости

nvd
почти 18 лет назад

Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Enterprise Portal 4.3.1 allows remote attackers to inject arbitrary web script or HTML via the emailAddress parameter in a Send New Password action, a different vector than CVE-2007-6055. NOTE: some of these details are obtained from third party information.

debian
почти 18 лет назад

Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay ...

EPSS

Процентиль: 91%
0.07499
Низкий

Дефекты

CWE-79