Логотип exploitDog
bind:CVE-2014-3416
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-3416

Количество 2

Количество 2

nvd логотип

CVE-2014-3416

больше 11 лет назад

uPortal before 4.0.13.1 does not properly check the MANAGE permissions, which allows remote authenticated users to manage arbitrary portlets by leveraging the SUBSCRIBE permission for the portlet-admin portlet.

CVSS2: 6.5
EPSS: Низкий
github логотип

GHSA-9gm3-h5cr-p7p2

больше 3 лет назад

uPortal before 4.0.13.1 does not properly check the MANAGE permissions, which allows remote authenticated users to manage arbitrary portlets by leveraging the SUBSCRIBE permission for the portlet-admin portlet.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2014-3416

uPortal before 4.0.13.1 does not properly check the MANAGE permissions, which allows remote authenticated users to manage arbitrary portlets by leveraging the SUBSCRIBE permission for the portlet-admin portlet.

CVSS2: 6.5
0%
Низкий
больше 11 лет назад
github логотип
GHSA-9gm3-h5cr-p7p2

uPortal before 4.0.13.1 does not properly check the MANAGE permissions, which allows remote authenticated users to manage arbitrary portlets by leveraging the SUBSCRIBE permission for the portlet-admin portlet.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу